Description
An issue was discovered on PHOENIX CONTACT AXL F BK PN <=1.0.4, AXL F BK ETH <= 1.12, and AXL F BK ETH XC <= 1.11 devices and Bosch Rexroth S20-ETH-BK and Rexroth S20-PN-BK+ (the S20-PN-BK+/S20-ETH-BK fieldbus couplers sold by Bosch Rexroth contain technology from Phoenix Contact). Incorrect handling of a request with non-standard symbols allows remote attackers to initiate a complete lock up of the bus coupler. Authentication of the request is not required.
Published: 2020-02-18
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2018-8778 An issue was discovered on PHOENIX CONTACT AXL F BK PN <=1.0.4, AXL F BK ETH <= 1.12, and AXL F BK ETH XC <= 1.11 devices and Bosch Rexroth S20-ETH-BK and Rexroth S20-PN-BK+ (the S20-PN-BK+/S20-ETH-BK fieldbus couplers sold by Bosch Rexroth contain technology from Phoenix Contact). Incorrect handling of a request with non-standard symbols allows remote attackers to initiate a complete lock up of the bus coupler. Authentication of the request is not required.
History

No history.

Subscriptions

Phoenixcontact Axl F Bk Eth Axl F Bk Eth Firmware Axl F Bk Eth Xc Axl F Bk Eth Xc Firmware Axl F Bk Pn Axl F Bk Pn Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T10:39:59.421Z

Reserved: 2018-09-13T00:00:00.000Z

Link: CVE-2018-16994

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-02-18T23:15:11.660

Modified: 2024-11-21T03:53:39.853

Link: CVE-2018-16994

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses