4.3
CVSSv2

CVE-2021-21004

Published: 25/06/2021 Updated: 02/07/2021
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

In Phoenix Contact FL SWITCH SMCS series products in multiple versions an attacker may insert malicious code via LLDP frames into the web-based management which could then be executed by the client.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

phoenixcontact fl_switch_smcs_16tx_firmware

phoenixcontact fl_switch_smcs_14tx\\/2fx_firmware

phoenixcontact fl_switch_smcs_14tx\\/2fx-sm_firmware

phoenixcontact fl_switch_smcs_8gt_firmware

phoenixcontact fl_switch_smcs_6gt\\/2sfp_firmware

phoenixcontact fl_switch_smcs_8tx-pn_firmware

phoenixcontact fl_switch_smcs_4tx-pn_firmware

phoenixcontact fl_switch_smcs_8tx_firmware

phoenixcontact fl_switch_smcs_6tx\\/2sfp_firmware

phoenixcontact fl_switch_smn_6tx\\/2pof-pn_firmware

phoenixcontact fl_switch_smn_8tx-pn_firmware

phoenixcontact fl_switch_smn_6tx\\/2fx_firmware

phoenixcontact fl_switch_smn_6tx\\/2fx_sm_firmware

phoenixcontact fl_nat_smn_8tx_firmware

phoenixcontact fl_nat_smn_8tx-m_firmware