Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-5592


Download of Code Without Integrity Check vulnerability in PHOENIX CONTACT MULTIPROG, PHOENIX CONTACT ProConOS eCLR (SDK) allows an unauthenticated remote attacker to download and execute applications without integrity checks on the device which may result in a complete loss of integrity.


Published

2023-12-14T14:15:45.427

Last Modified

2024-11-21T08:42:05.330

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Primary
    CWE-494

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application phoenixcontact multiprog * Yes
Application phoenixcontact proconos_eclr * Yes

References