← Back

Phoenixcontact

phoenixcontact

156 CVEs • 680 products

Products (680)

Click to collapse
Toggle

CVEs (156)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Phoenixcontact
2Fl Comserver Uni 232/422/485 T Firmware
Fl Comserver Uni 232/422/485 Firmware
Jun 17, 2026
Jun 25, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In Phoenix Contact FL COMSERVER UNI in versions < 2.40 a invalid Modbus exception response can lead to a temporary denial of service.
1Phoenixcontact
9Fl Mguard Rs4004 Tx/dtx Firmware
Fl Mguard Rs4004 Tx/dtx Vpn FirmwareInnominate Mguard Rs4000 4tx/3g/tx Vpn Firmware+6 more
Jun 17, 2026
Dec 17, 2020
N/A· v4
9.1 CRITICAL· v3
6.4 MEDIUM· v2
On Phoenix Contact mGuard Devices versions before 8.8.3 LAN ports get functional after reboot even if they are disabled in the device configuration. For mGuard devices with integrated switch on the LAN side, single switc...Show more
On Phoenix Contact mGuard Devices versions before 8.8.3 LAN ports get functional after reboot even if they are disabled in the device configuration. For mGuard devices with integrated switch on the LAN side, single switch ports can be disabled by device configuration. After a reboot these ports get functional independent from their configuration setting: Missing Initialization of ResourceShow less
1Phoenixcontact
1Plcnext Firmware
Jun 17, 2026
Dec 17, 2020
N/A· v4
6.5 MEDIUM· v3
6.1 MEDIUM· v2
On Phoenix Contact PLCnext Control Devices versions before 2021.0 LTS a specially crafted LLDP packet may lead to a high system load in the PROFINET stack. An attacker can cause failure of system services or a complete r...Show more
On Phoenix Contact PLCnext Control Devices versions before 2021.0 LTS a specially crafted LLDP packet may lead to a high system load in the PROFINET stack. An attacker can cause failure of system services or a complete reboot.Show less
1Phoenixcontact
1Plcnext Firmware
Jun 17, 2026
Dec 17, 2020
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
On Phoenix Contact PLCnext Control Devices versions before 2021.0 LTS an attacker can use this vulnerability i.e. to open a reverse shell with root privileges.
1Phoenixcontact
1Plcnext Firmware
Jun 17, 2026
Dec 17, 2020
N/A· v4
5.5 MEDIUM· v3
5.0 MEDIUM· v2
On Phoenix Contact PLCnext Control Devices versions before 2021.0 LTS an attacker can use the knowledge gained by reading the insufficiently protected sensitive information to plan further attacks.
1Phoenixcontact
1Plcnext Firmware
Jun 17, 2026
Dec 17, 2020
N/A· v4
9.0 CRITICAL· v3
6.0 MEDIUM· v2
On Phoenix Contact PLCnext Control Devices versions before 2021.0 LTS an authenticated low privileged user could embed malicious Javascript code to gain admin rights when the admin user visits the vulnerable website (loc...Show more
On Phoenix Contact PLCnext Control Devices versions before 2021.0 LTS an authenticated low privileged user could embed malicious Javascript code to gain admin rights when the admin user visits the vulnerable website (local privilege escalation).Show less
1Phoenixcontact
3Btp 2043w Firmware
Btp 2070w FirmwareBtp 2102w Firmware
Jun 17, 2026
Dec 2, 2020
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Uncontrolled Resource Consumption can be exploited to cause the Phoenix Contact HMIs BTP 2043W, BTP 2070W and BTP 2102W in all versions to become unresponsive and not accurately update the display content (Denial of Serv...Show more
Uncontrolled Resource Consumption can be exploited to cause the Phoenix Contact HMIs BTP 2043W, BTP 2070W and BTP 2102W in all versions to become unresponsive and not accurately update the display content (Denial of Service).Show less
1Phoenixcontact
1Plcnext Engineer
Jun 17, 2026
Jul 21, 2020
N/A· v4
7.3 HIGH· v3
4.4 MEDIUM· v2
In PHOENIX CONTACT PLCnext Engineer version 2020.3.1 and earlier an improper path sanitation vulnerability exists on import of project files.
1Phoenixcontact
2Pc Worx
Pc Worx Express
Jun 17, 2026
Jul 1, 2020
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
mwe file parsing in Phoenix Contact PC Worx and PC Worx Express version 1.87 and earlier is vulnerable to out-of-bounds read remote code execution. Manipulated PC Worx projects could lead to a remote code execution due t...Show more
mwe file parsing in Phoenix Contact PC Worx and PC Worx Express version 1.87 and earlier is vulnerable to out-of-bounds read remote code execution. Manipulated PC Worx projects could lead to a remote code execution due to insufficient input data validation.Show less
1Phoenixcontact
2Pc Worx
Pc Worx Express
Jun 17, 2026
Jul 1, 2020
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
PLCopen XML file parsing in Phoenix Contact PC Worx and PC Worx Express version 1.87 and earlier can lead to a stack-based overflow. Manipulated PC Worx projects could lead to a remote code execution due to insufficient...Show more
PLCopen XML file parsing in Phoenix Contact PC Worx and PC Worx Express version 1.87 and earlier can lead to a stack-based overflow. Manipulated PC Worx projects could lead to a remote code execution due to insufficient input data validation.Show less
1Phoenixcontact
3Portico Server 16 Client
Portico Server 1 ClientPortico Server 4 Client
Jun 17, 2026
Mar 27, 2020
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Local Privilege Escalation can occur in PHOENIX CONTACT PORTICO SERVER through 3.0.7 when installed to run as a service.
1Phoenixcontact
1Pc Worx Srt
Jun 17, 2026
Mar 27, 2020
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Insecure, default path permissions in PHOENIX CONTACT PC WORX SRT through 1.14 allow for local privilege escalation.
1Phoenixcontact
6Tc Cloud Client 1002 4g Firmware
Tc Cloud Client 1002 Txtx FirmwareTc Router 2002t 3g Firmware+3 more
Jun 17, 2026
Mar 12, 2020
N/A· v4
8.8 HIGH· v3
9.0 HIGH· v2
PHOENIX CONTACT TC ROUTER 3002T-4G through 2.05.3, TC ROUTER 2002T-3G through 2.05.3, TC ROUTER 3002T-4G VZW through 2.05.3, TC ROUTER 3002T-4G ATT through 2.05.3, TC CLOUD CLIENT 1002-4G through 2.03.17, and TC CLOUD CL...Show more
PHOENIX CONTACT TC ROUTER 3002T-4G through 2.05.3, TC ROUTER 2002T-3G through 2.05.3, TC ROUTER 3002T-4G VZW through 2.05.3, TC ROUTER 3002T-4G ATT through 2.05.3, TC CLOUD CLIENT 1002-4G through 2.03.17, and TC CLOUD CLIENT 1002-TXTX through 1.03.17 devices allow authenticated users to inject system commands through a modified POST request to a specific URL.Show less
1Phoenixcontact
6Tc Cloud Client 1002 4g Firmware
Tc Cloud Client 1002 Txtx FirmwareTc Router 2002t 3g Firmware+3 more
Jun 17, 2026
Mar 12, 2020
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
PHOENIX CONTACT TC ROUTER 3002T-4G through 2.05.3, TC ROUTER 2002T-3G through 2.05.3, TC ROUTER 3002T-4G VZW through 2.05.3, TC ROUTER 3002T-4G ATT through 2.05.3, TC CLOUD CLIENT 1002-4G through 2.03.17, and TC CLOUD CL...Show more
PHOENIX CONTACT TC ROUTER 3002T-4G through 2.05.3, TC ROUTER 2002T-3G through 2.05.3, TC ROUTER 3002T-4G VZW through 2.05.3, TC ROUTER 3002T-4G ATT through 2.05.3, TC CLOUD CLIENT 1002-4G through 2.03.17, and TC CLOUD CLIENT 1002-TXTX through 1.03.17 devices contain a hardcoded certificate (and key) that is used by default for web-based services on the device. Impersonation, man-in-the-middle, or passive decryption attacks are possible if the generic certificate is not replaced by a device-specific certificate during installation.Show less
1Phoenixcontact
3Axl F Bk Eth Firmware
Axl F Bk Eth Xc FirmwareAxl F Bk Pn Firmware
Nov 21, 2024
Feb 18, 2020
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
An issue was discovered on PHOENIX CONTACT AXL F BK PN <=1.0.4, AXL F BK ETH <= 1.12, and AXL F BK ETH XC <= 1.11 devices and Bosch Rexroth S20-ETH-BK and Rexroth S20-PN-BK+ (the S20-PN-BK+/S20-ETH-BK fieldbus couplers s...Show more
An issue was discovered on PHOENIX CONTACT AXL F BK PN <=1.0.4, AXL F BK ETH <= 1.12, and AXL F BK ETH XC <= 1.11 devices and Bosch Rexroth S20-ETH-BK and Rexroth S20-PN-BK+ (the S20-PN-BK+/S20-ETH-BK fieldbus couplers sold by Bosch Rexroth contain technology from Phoenix Contact). Incorrect handling of a request with non-standard symbols allows remote attackers to initiate a complete lock up of the bus coupler. Authentication of the request is not required.Show less
1Phoenixcontact
2Fl Nat 2208 Firmware
Fl Nat 2304 2gc 2sfp Firmware
Jun 17, 2026
Feb 18, 2020
N/A· v4
8.2 HIGH· v3
4.3 MEDIUM· v2
Improper access control exists on PHOENIX CONTACT FL NAT 2208 devices before V2.90 and FL NAT 2304-2GC-2SFP devices before V2.90 when using MAC-based port security.
1Phoenixcontact
2Ilc 2050 Bi L Firmware
Ilc 2050 Bi Firmware
Jun 17, 2026
Feb 17, 2020
N/A· v4
9.4 CRITICAL· v3
7.5 HIGH· v2
An issue was discovered on Phoenix Contact Emalytics Controller ILC 2050 BI before 1.2.3 and BI-L before 1.2.3 devices. There is an insecure mechanism for read and write access to the configuration of the device. The mec...Show more
An issue was discovered on Phoenix Contact Emalytics Controller ILC 2050 BI before 1.2.3 and BI-L before 1.2.3 devices. There is an insecure mechanism for read and write access to the configuration of the device. The mechanism can be discovered by examining a link on the website of the device.Show less
1Phoenixcontact
3Config+
Pc WorxPc Worx Express
Jun 17, 2026
Oct 31, 2019
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86. A manipulated PC Worx or Config+ project file could lead to an Out-of-bounds Read and remote code e...Show more
An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86. A manipulated PC Worx or Config+ project file could lead to an Out-of-bounds Read and remote code execution. The attacker needs to get access to an original PC Worx or Config+ project to be able to manipulate data inside. After manipulation, the attacker needs to exchange the original files with the manipulated ones on the application programming workstation.Show less
1Phoenixcontact
1Automationworx Software Suite
Jun 17, 2026
Jun 24, 2019
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86. A manipulated PC Worx or Config+ project file could lead to an Uninitialized Pointer and remote cod...Show more
An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86. A manipulated PC Worx or Config+ project file could lead to an Uninitialized Pointer and remote code execution. The attacker needs to get access to an original PC Worx or Config+ project file to be able to manipulate it. After manipulation, the attacker needs to exchange the original file with the manipulated one on the application programming workstation.Show less
1Phoenixcontact
1Automationworx Software Suite
Jun 17, 2026
Jun 24, 2019
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86. A manipulated PC Worx or Config+ project file could lead to an Out-Of-Bounds Read, Information Disc...Show more
An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86. A manipulated PC Worx or Config+ project file could lead to an Out-Of-Bounds Read, Information Disclosure, and remote code execution. The attacker needs to get access to an original PC Worx or Config+ project file to be able to manipulate it. After manipulation, the attacker needs to exchange the original file with the manipulated one on the application programming workstation.Show less