PT-2020-20657 · Phoenix Contact · Tc Router 3002T-4G+5

Thomas Weber

·

Published

2020-03-12

·

Updated

2020-03-16

·

CVE-2020-9436

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions PHOENIX CONTACT TC ROUTER 3002T-4G versions 2.05.3 and earlier PHOENIX CONTACT TC ROUTER 2002T-3G versions 2.05.3 and earlier PHOENIX CONTACT TC ROUTER 3002T-4G VZW versions 2.05.3 and earlier PHOENIX CONTACT TC ROUTER 3002T-4G ATT versions 2.05.3 and earlier PHOENIX CONTACT TC CLOUD CLIENT 1002-4G versions 2.03.17 and earlier PHOENIX CONTACT TC CLOUD CLIENT 1002-TXTX versions 1.03.17 and earlier
Description The issue allows authenticated users to inject system commands through a modified POST request to a specific URL.
Recommendations For PHOENIX CONTACT TC ROUTER 3002T-4G versions 2.05.3 and earlier, update to a version later than 2.05.3. For PHOENIX CONTACT TC ROUTER 2002T-3G versions 2.05.3 and earlier, update to a version later than 2.05.3. For PHOENIX CONTACT TC ROUTER 3002T-4G VZW versions 2.05.3 and earlier, update to a version later than 2.05.3. For PHOENIX CONTACT TC ROUTER 3002T-4G ATT versions 2.05.3 and earlier, update to a version later than 2.05.3. For PHOENIX CONTACT TC CLOUD CLIENT 1002-4G versions 2.03.17 and earlier, update to a version later than 2.03.17. For PHOENIX CONTACT TC CLOUD CLIENT 1002-TXTX versions 1.03.17 and earlier, update to a version later than 1.03.17.

Exploit

Fix

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-9436

Affected Products

Tc Cloud Client 1002-4G
Tc Cloud Client 1002-Txtx
Tc Router 2002T-3G
Tc Router 3002T-4G
Tc Router 3002T-4G Att
Tc Router 3002T-4G Vzw