5
CVSSv2

CVE-2018-10729

Published: 17/05/2018 Updated: 20/06/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

All Phoenix Contact managed FL SWITCH 3xxx, 4xxx, 48xx products running firmware version 1.0 to 1.33 allow reading the configuration file by an unauthenticated user.

Vulnerable Product Search on Vulmon Subscribe to Product

phoenixcontact fl_switch_3005_firmware

phoenixcontact fl_switch_3005t_firmware

phoenixcontact fl_switch_3004t-fx_firmware

phoenixcontact fl_switch_3004t-fx_st_firmware

phoenixcontact fl_switch_3008_firmware

phoenixcontact fl_switch_3008t_firmware

phoenixcontact fl_switch_3006t-2fx_firmware

phoenixcontact fl_switch_3006t-2fx_st_firmware

phoenixcontact fl_switch_3012e-2sfx_firmware

phoenixcontact fl_switch_3016e_firmware

phoenixcontact fl_switch_3016_firmware

phoenixcontact fl_switch_3016t_firmware

phoenixcontact fl_switch_3006t-2fx_sm_firmware

phoenixcontact fl_switch_4008t-2sfp_firmware

phoenixcontact fl_switch_4008t-2gt-4fx_sm_firmware

phoenixcontact fl_switch_4008t-2gt-3fx_sm_firmware

phoenixcontact fl_switch_4808e-16fx_lc-4gc_firmware

phoenixcontact fl_switch_4808e-16fx_sm-4gc_firmware

phoenixcontact fl_switch_4808e-16fx_sm_st-4gc_firmware

phoenixcontact fl_switch_4808e-16fx_st-4gc_firmware

phoenixcontact fl_switch_4808e-16fx-4gc_firmware

phoenixcontact fl_switch_4808e-16fx_sm_lc-4gc_firmware

phoenixcontact fl_switch_4012t_2gt_2fx_firmware

phoenixcontact fl_switch_4012t-2gt-2fx_st_firmware

phoenixcontact fl_switch_4824e-4gc_firmware

phoenixcontact fl_switch_4800e-24fx-4gc_firmware

phoenixcontact fl_switch_4800e-24fx_sm-4gc_firmware

phoenixcontact fl_switch_3012e-2fx_sm_firmware

phoenixcontact fl_switch_4000t-8poe-2sfp-r_firmware