PT-2020-13156 · Phoenix Contact · Mguard
Smst Designers
·
Published
2020-12-17
·
Updated
2020-12-21
·
CVE-2020-12523
CVSS v3.1
9.1
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Phoenix Contact mGuard Devices versions prior to 8.8.3
Description
The issue concerns the functionality of LAN ports on Phoenix Contact mGuard Devices. Even if these ports are disabled in the device configuration, they become functional after a reboot. This behavior is observed in devices with an integrated switch on the LAN side, where single switch ports can be disabled through device configuration, but they still become functional after a reboot, independent of their configuration setting.
Recommendations
For versions prior to 8.8.3, update to version 8.8.3 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Mguard