CVE-2023-46141
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Dec 14, 2023
Updated: Dec 21, 2023
CWE ID 732
Summary
CVE-2023-46141 is a critical vulnerability affecting multiple products in the PHOENIX CONTACT classic line. This issue arises due to incorrect permission assignment for a critical resource, granting unauthenticated remote attackers full access to the affected device. Successful exploitation of this vulnerability could lead to serious consequences, including unauthorized system control and potential data breaches. It is strongly recommended that users of these affected products apply the available patches or updates to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Phoenixcontact Config+
- Phoenixcontact Pc Worx
- Phoenixcontact Pc Worx Express
Affected Vendors
- Phoenix Contact Inc.