PT-2020-13156 · Phoenix Contact · Mguard

Smst Designers

·

Published

2020-12-17

·

Updated

2020-12-21

·

CVE-2020-12523

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions Phoenix Contact mGuard Devices versions prior to 8.8.3
Description The issue concerns the functionality of LAN ports on Phoenix Contact mGuard Devices. Even if these ports are disabled in the device configuration, they become functional after a reboot. This behavior is observed in devices with an integrated switch on the LAN side, where single switch ports can be disabled through device configuration, but they still become functional after a reboot, independent of their configuration setting.
Recommendations For versions prior to 8.8.3, update to version 8.8.3 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-12523

Affected Products

Mguard