A Cross-site Scripting issue was discovered in PHOENIX CONTACT FL COMSERVER BASIC 232/422/485, FL COMSERVER UNI 232/422/485, FL COMSERVER BAS 232/422/485-T, FL COMSERVER UNI 232/422/485-T, FL COM SERVER RS232, FL COM SERVER RS485, and PSI-MODEM/ETH (running firmware versions prior to 1.99, 2.20, or 2.40). The cross-site scripting vulnerability has been identified, which may allow remote code execution.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Phoenixcontact
Subscribe
|
Fl Com Server Rs232
Subscribe
Fl Com Server Rs232 Firmware
Subscribe
Fl Com Server Rs485
Subscribe
Fl Com Server Rs485 Firmware
Subscribe
Fl Comserver Bas 232
Subscribe
Fl Comserver Bas 232 Firmware
Subscribe
Fl Comserver Bas 422
Subscribe
Fl Comserver Bas 422 Firmware
Subscribe
Fl Comserver Bas 485-t
Subscribe
Fl Comserver Bas 485-t Firmware
Subscribe
Fl Comserver Basic 232
Subscribe
Fl Comserver Basic 232 Firmware
Subscribe
Fl Comserver Basic 422
Subscribe
Fl Comserver Basic 422 Firmware
Subscribe
Fl Comserver Basic 485
Subscribe
Fl Comserver Basic 485 Firmware
Subscribe
Fl Comserver Uni 232
Subscribe
Fl Comserver Uni 232 Firmware
Subscribe
Fl Comserver Uni 422
Subscribe
Fl Comserver Uni 422 Firmware
Subscribe
Fl Comserver Uni 485
Subscribe
Fl Comserver Uni 485-t
Subscribe
Fl Comserver Uni 485-t Firmware
Subscribe
Fl Comserver Uni 485 Firmware
Subscribe
Psi-modem\/eth
Subscribe
Psi-modem\/eth Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-7907 | A Cross-site Scripting issue was discovered in PHOENIX CONTACT FL COMSERVER BASIC 232/422/485, FL COMSERVER UNI 232/422/485, FL COMSERVER BAS 232/422/485-T, FL COMSERVER UNI 232/422/485-T, FL COM SERVER RS232, FL COM SERVER RS485, and PSI-MODEM/ETH (running firmware versions prior to 1.99, 2.20, or 2.40). The cross-site scripting vulnerability has been identified, which may allow remote code execution. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-08-05T20:35:20.646Z
Reserved: 2017-11-09T00:00:00
Link: CVE-2017-16723
No data.
Status : Deferred
Published: 2017-12-11T16:29:00.283
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-16723
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD