Vulnerabilities > CVE-2024-3913 - Files or Directories Accessible to External Parties vulnerability in Phoenixcontact products

047910
CVSS 5.3 - MEDIUM
Attack vector
ADJACENT_NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
HIGH
Availability impact
NONE
high complexity
phoenixcontact
CWE-552

Summary

An unauthenticated remote attacker can use this vulnerability to change the device configuration due to a file writeable for short time after system startup.

Vulnerable Configurations

Part Description Count
OS
Phoenixcontact
36
Hardware
Phoenixcontact
4