Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-0757


Incorrect Permission Assignment for Critical Resource vulnerability in PHOENIX CONTACT MULTIPROG, PHOENIX CONTACT ProConOS eCLR (SDK) allows an unauthenticated remote attacker to upload arbitrary malicious code and gain full access on the affected device.


Published

2023-12-14T14:15:42.083

Last Modified

2024-11-21T07:37:45.723

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Primary
    CWE-732

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application phoenixcontact multiprog * Yes
Application phoenixcontact proconos_eclr * Yes

References