Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2020-12524


Uncontrolled Resource Consumption can be exploited to cause the Phoenix Contact HMIs BTP 2043W, BTP 2070W and BTP 2102W in all versions to become unresponsive and not accurately update the display content (Denial of Service).


Published

2020-12-02T15:15:12.173

Last Modified

2024-11-21T04:59:51.967

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:N/I:N/A:P

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: PARTIAL
Exploitability Score

10.0

Impact Score

2.9

Weaknesses
  • Type: Secondary
    CWE-400
  • Type: Primary
    CWE-400

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System phoenixcontact btp_2043w_firmware * Yes
Hardware phoenixcontact btp_2043w - No
Operating System phoenixcontact btp_2070w_firmware * Yes
Hardware phoenixcontact btp_2070w - No
Operating System phoenixcontact btp_2102w_firmware * Yes
Hardware phoenixcontact btp_2102w - No

References