PT-2018-1518 · Phoenix Contact · Fl Switch

Semen Sokolov

+1

·

Publicado

2018-02-22

·

Atualizado

2018-06-20

·

CVE-2018-10731

CVSS v3.1

9.3

Crítica

VetorAV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Phoenix Contact FL SWITCH versions 1.0 through 1.33
Description The issue is caused by a buffer overflow in the device's memory, allowing a remote attacker to gain unauthorized access to the device's OS files and execute arbitrary code. The estimated number of potentially affected devices worldwide is not specified.
Recommendations For versions 1.0 through 1.33, update the firmware to a version that is not affected by this issue. As a temporary workaround, consider restricting access to the device to minimize the risk of exploitation.

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2018-01073
CVE-2018-10731

Produtos afetados

Fl Switch