Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-3737


In PHOENIX CONTACT Automationworx Software Suite up to version 1.89 memory can be read beyond the intended scope due to insufficient validation of input data. Availability, integrity, or confidentiality of an application programming workstation might be compromised by attacks using these vulnerabilities.


Published

2022-11-15T11:15:12.457

Last Modified

2024-11-21T07:20:08.370

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-125
  • Type: Primary
    CWE-125

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application phoenixcontact automationworx_software_suite 1.89 Yes

References