7.8
CVSSv3

CVE-2018-5441

Published: 30/01/2018 Updated: 09/10/2019
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

An Improper Validation of Integrity Check Value issue exists in PHOENIX CONTACT mGuard firmware versions 7.2 to 8.6.0. mGuard devices rely on internal checksums for verification of the internal integrity of the update packages. Verification may not always be performed correctly, allowing an malicious user to modify firmware update packages.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

phoenixcontact mguard centerport firmware

phoenixcontact mguard delta tx/tx firmware

phoenixcontact mguard delta tx/tx vpn firmware

phoenixcontact mguard gt/gt firmware

phoenixcontact mguard gt/gt vpn firmware

phoenixcontact mguard pci4000 vpn firmware

phoenixcontact mguard pcie4000 vpn firmware

phoenixcontact mguard rs2000 tx/tx vpn firmware

phoenixcontact mguard rs2000 tx/tx-b firmware

phoenixcontact mguard rs2005 tx vpn firmware

phoenixcontact mguard rs4000 tx/tx firmware

phoenixcontact mguard rs4000 tx/tx vpn firmware

phoenixcontact mguard rs4000 tx/tx vpn-m firmware

phoenixcontact mguard rs4000 tx/tx-p firmware

phoenixcontact mguard rs4004 tx/dtx firmware

phoenixcontact mguard rs4004 tx/dtx vpn firmware

phoenixcontact mguard smart2 firmware

phoenixcontact mguard smart2 vpn firmware

phoenixcontact mguard rs2000 3g vpn firmware

phoenixcontact mguard rs4000 3g vpn firmware

phoenixcontact mguard core tx vpn firmware

phoenixcontact mguard rs2000 4g vpn firmware

phoenixcontact mguard rs4000 4g vpn firmware