Vulnerabilities > Phoenixcontact > AXC F 3152 Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-12-14 CVE-2023-46142 Incorrect Permission Assignment for Critical Resource vulnerability in Phoenixcontact products
A incorrect permission assignment for critical resource vulnerability in PLCnext products allows an remote attacker with low privileges to gain full access on the affected devices.
network
low complexity
phoenixcontact CWE-732
8.8
2023-12-14 CVE-2023-46144 Download of Code Without Integrity Check vulnerability in Phoenixcontact products
A download of code without integrity check vulnerability in PLCnext products allows an remote attacker with low privileges to compromise integrity on the affected engineering station and the connected devices.
network
low complexity
phoenixcontact CWE-494
6.5
2021-09-27 CVE-2021-34570 Improper Input Validation vulnerability in Phoenixcontact products
Multiple Phoenix Contact PLCnext control devices in versions prior to 2021.0.5 LTS are prone to a DoS attack through special crafted JSON requests.
network
low complexity
phoenixcontact CWE-20
7.8