7.1
CVSSv2

CVE-2019-10997

Published: 17/06/2019 Updated: 24/08/2020
CVSS v2 Base Score: 7.1 | Impact Score: 6.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.9 | Impact Score: 3.6 | Exploitability Score: 2.2
VMScore: 632
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C

Vulnerability Summary

An issue exists on Phoenix Contact AXC F 2152 (No.2404267) prior to 2019.0 LTS and AXC F 2152 STARTERKIT (No.1046568) prior to 2019.0 LTS devices. Protocol Fuzzing on PC WORX Engineer by a man in the middle attacker stops the PLC service. The device must be rebooted, or the PLC service must be restarted manually via a Linux shell.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

phoenixcontact axc_f_2152_firmware

phoenixcontact axc_f_2152_starterkit_firmware