Security News > 2020 > March > Several Vulnerabilities Expose Phoenix Contact Industrial 4G Routers to Attacks

Several potentially serious vulnerabilities have been discovered in some of the industrial 4G routers made by Phoenix Contact, a Germany-based provider of industrial automation, connectivity and interface solutions.
TC CLOUD CLIENT devices provide an industrial VPN gateway for remote maintenance via a 4G network.
SEC Consult has discovered three types of vulnerabilities affecting these routers.
The version used in these devices is affected by several vulnerabilities, including ones that could be used for code execution and writing arbitrary files.
The vulnerabilities were reported to the vendor in late January and firmware updates were released in early March, which is impressive for an industrial solutions vendor.
News URL
Related news
- Over 400 IPs Exploiting Multiple SSRF Vulnerabilities in Coordinated Cyber Attack (source)
- GitHub Uncovers New ruby-saml Vulnerabilities Allowing Account Takeover Attacks (source)
- ⚡ THN Weekly Recap: Router Hacks, PyPI Attacks, New Ransomware Decryptor, and More (source)
- Ongoing Cyber Attacks Exploit Critical Vulnerabilities in Cisco Smart Licensing Utility (source)