Vulnerabilities > Phoenixcontact > Automationworx Software Suite

DATE CVE VULNERABILITY TITLE RISK
2023-12-14 CVE-2023-46141 Incorrect Permission Assignment for Critical Resource vulnerability in Phoenixcontact products
Incorrect Permission Assignment for Critical Resource vulnerability in multiple products of the PHOENIX CONTACT classic line allow an remote unauthenticated attacker to gain full access of the affected device.
network
low complexity
phoenixcontact CWE-732
critical
9.8
2023-12-14 CVE-2023-46143 Download of Code Without Integrity Check vulnerability in Phoenixcontact products
Download of Code Without Integrity Check vulnerability in PHOENIX CONTACT classic line PLCs allows an unauthenticated remote attacker to modify some or all applications on a PLC.
network
low complexity
phoenixcontact CWE-494
7.5
2022-11-15 CVE-2022-3461 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Phoenixcontact Automationworx Software Suite 1.89
In PHOENIX CONTACT Automationworx Software Suite up to version 1.89 manipulated PC Worx or Config+ files could lead to a heap buffer overflow and a read access violation.
local
low complexity
phoenixcontact CWE-119
7.8
2022-11-15 CVE-2022-3737 Out-of-bounds Read vulnerability in Phoenixcontact Automationworx Software Suite 1.89
In PHOENIX CONTACT Automationworx Software Suite up to version 1.89 memory can be read beyond the intended scope due to insufficient validation of input data.
local
low complexity
phoenixcontact CWE-125
7.8
2019-06-24 CVE-2019-12870 Access of Uninitialized Pointer vulnerability in Phoenixcontact Automationworx Software Suite
An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86.
6.8
2019-06-24 CVE-2019-12869 Out-of-bounds Read vulnerability in Phoenixcontact Automationworx Software Suite
An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86.
6.8
2019-06-24 CVE-2019-12871 Use After Free vulnerability in Phoenixcontact Automationworx Software Suite
An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86.
6.8