9.8
CVSSv3

CVE-2019-9201

Published: 26/02/2019 Updated: 14/02/2024
CVSS v2 Base Score: 9 | Impact Score: 8.5 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 801
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:C

Vulnerability Summary

Multiple Phoenix Contact devices allow remote malicious users to establish TCP sessions to port 1962 and obtain sensitive information or make changes, as demonstrated by using the Create Backup feature to traverse all directories.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

phoenixcontact ilc_131_eth_firmware -

phoenixcontact ilc_131_eth\\/xc_firmware -

phoenixcontact ilc_151_eth_firmware -

phoenixcontact ilc_151_eth\\/xc_firmware -

phoenixcontact ilc_171_eth_2tx_firmware -

phoenixcontact ilc_191_eth_2tx_firmware -

phoenixcontact ilc_191_me\\/an_firmware -

phoenixcontact axc_1050_firmware -