Description
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges may use a specific HTTP POST releated to certificate operations to gain full access to the device.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-44222 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges may use a specific HTTP POST releated to certificate operations to gain full access to the device. |
References
| Link | Providers |
|---|---|
| https://cert.vde.com/en/advisories/VDE-2023-018/ |
|
History
Mon, 04 Nov 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
Phoenixcontact
Subscribe
Wp 6070-wvps
Subscribe
Wp 6070-wvps Firmware
Subscribe
Wp 6101-wxps
Subscribe
Wp 6101-wxps Firmware
Subscribe
Wp 6121-wxps
Subscribe
Wp 6121-wxps Firmware
Subscribe
Wp 6156-whps
Subscribe
Wp 6156-whps Firmware
Subscribe
Wp 6185-whps
Subscribe
Wp 6185-whps Firmware
Subscribe
Wp 6215-whps
Subscribe
Wp 6215-whps Firmware
Subscribe
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2024-11-04T17:15:17.983Z
Reserved: 2023-07-10T07:53:12.241Z
Link: CVE-2023-3571
Updated: 2024-08-02T07:01:56.028Z
Status : Modified
Published: 2023-08-08T07:15:10.727
Modified: 2024-11-21T08:17:34.437
Link: CVE-2023-3571
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD