An Improper Authorization issue was discovered in PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, and 48xxx Series products running firmware Version 1.0 to 1.32. A remote unauthenticated attacker may be able to craft special HTTP requests allowing an attacker to bypass web-service authentication allowing the attacker to obtain administrative privileges on the device.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Phoenixcontact
Subscribe
|
Fl Switch 3004t-fx
Subscribe
Fl Switch 3004t-fx Firmware
Subscribe
Fl Switch 3004t-fx St
Subscribe
Fl Switch 3004t-fx St Firmware
Subscribe
Fl Switch 3005
Subscribe
Fl Switch 3005 Firmware
Subscribe
Fl Switch 3005t
Subscribe
Fl Switch 3005t Firmware
Subscribe
Fl Switch 3006t-2fx
Subscribe
Fl Switch 3006t-2fx Firmware
Subscribe
Fl Switch 3006t-2fx Sm
Subscribe
Fl Switch 3006t-2fx Sm Firmware
Subscribe
Fl Switch 3006t-2fx St
Subscribe
Fl Switch 3006t-2fx St Firmware
Subscribe
Fl Switch 3008
Subscribe
Fl Switch 3008 Firmware
Subscribe
Fl Switch 3008t
Subscribe
Fl Switch 3008t Firmware
Subscribe
Fl Switch 3012e-2fx Sm
Subscribe
Fl Switch 3012e-2fx Sm Firmware
Subscribe
Fl Switch 3012e-2sfx
Subscribe
Fl Switch 3012e-2sfx Firmware
Subscribe
Fl Switch 3016
Subscribe
Fl Switch 3016 Firmware
Subscribe
Fl Switch 3016e
Subscribe
Fl Switch 3016e Firmware
Subscribe
Fl Switch 3016t
Subscribe
Fl Switch 3016t Firmware
Subscribe
Fl Switch 4000t-8poe-2sfp-r
Subscribe
Fl Switch 4000t-8poe-2sfp-r Firmware
Subscribe
Fl Switch 4008t-2gt-3fx Sm
Subscribe
Fl Switch 4008t-2gt-3fx Sm Firmware
Subscribe
Fl Switch 4008t-2gt-4fx Sm
Subscribe
Fl Switch 4008t-2gt-4fx Sm Firmware
Subscribe
Fl Switch 4008t-2sfp
Subscribe
Fl Switch 4008t-2sfp Firmware
Subscribe
Fl Switch 4012t-2gt-2fx St
Subscribe
Fl Switch 4012t-2gt-2fx St Firmware
Subscribe
Fl Switch 4012t 2gt 2fx
Subscribe
Fl Switch 4012t 2gt 2fx Firmware
Subscribe
Fl Switch 4800e-24fx-4gc
Subscribe
Fl Switch 4800e-24fx-4gc Firmware
Subscribe
Fl Switch 4800e-24fx Sm-4gc
Subscribe
Fl Switch 4800e-24fx Sm-4gc Firmware
Subscribe
Fl Switch 4808e-16fx-4gc
Subscribe
Fl Switch 4808e-16fx-4gc Firmware
Subscribe
Fl Switch 4808e-16fx Lc-4gc
Subscribe
Fl Switch 4808e-16fx Lc-4gc Firmware
Subscribe
Fl Switch 4808e-16fx Sm-4gc
Subscribe
Fl Switch 4808e-16fx Sm-4gc Firmware
Subscribe
Fl Switch 4808e-16fx Sm Lc-4gc
Subscribe
Fl Switch 4808e-16fx Sm Lc-4gc Firmware
Subscribe
Fl Switch 4808e-16fx Sm St-4gc
Subscribe
Fl Switch 4808e-16fx Sm St-4gc Firmware
Subscribe
Fl Switch 4808e-16fx St-4gc
Subscribe
Fl Switch 4808e-16fx St-4gc Firmware
Subscribe
Fl Switch 4824e-4gc
Subscribe
Fl Switch 4824e-4gc Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-7927 | An Improper Authorization issue was discovered in PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, and 48xxx Series products running firmware Version 1.0 to 1.32. A remote unauthenticated attacker may be able to craft special HTTP requests allowing an attacker to bypass web-service authentication allowing the attacker to obtain administrative privileges on the device. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-08-05T20:35:20.399Z
Reserved: 2017-11-09T00:00:00
Link: CVE-2017-16743
No data.
Status : Modified
Published: 2018-01-12T20:29:00.387
Modified: 2024-11-21T03:16:53.180
Link: CVE-2017-16743
No data.
OpenCVE Enrichment
No data.
EUVD