← Back

CVE-2020-9436

nvd nist
Published: Mar 12, 2020Modified: Nov 21, 2024

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

PHOENIX CONTACT TC ROUTER 3002T-4G through 2.05.3, TC ROUTER 2002T-3G through 2.05.3, TC ROUTER 3002T-4G VZW through 2.05.3, TC ROUTER 3002T-4G ATT through 2.05.3, TC CLOUD CLIENT 1002-4G through 2.03.17, and TC CLOUD CLIENT 1002-TXTX through 1.03.17 devices allow authenticated users to inject system commands through a modified POST request to a specific URL.

Affected (6)

6 products
Tc Router 3002t 4g Firmware
Tc Router 2002t 3g Firmware
Tc Router 3002t 4g Vzw Firmware
Tc Router 3002t 4g Att Firmware
Tc Cloud Client 1002 4g Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 2.05.3
Running on/withPlatform Versions
Phoenixcontact
Tc Router 3002t 4g
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 2.05.3
Running on/withPlatform Versions
Phoenixcontact
Tc Router 2002t 3g
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 2.05.3
Running on/withPlatform Versions
Phoenixcontact
Tc Router 3002t 4g Vzw
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 2.05.3
Running on/withPlatform Versions
Phoenixcontact
Tc Router 3002t 4g Att
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 2.03.17
Running on/withPlatform Versions
Phoenixcontact
Tc Cloud Client 1002 4g
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 1.03.17
Running on/withPlatform Versions
Phoenixcontact
Tc Cloud Client 1002 Txtx
All versions

References (8)

Source: cve@mitre.org
ExploitThird Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.