Vulnerabilities > Phoenixcontact > Plcnext Engineer > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-12-14 CVE-2023-46144 Download of Code Without Integrity Check vulnerability in Phoenixcontact products
A download of code without integrity check vulnerability in PLCnext products allows an remote attacker with low privileges to compromise integrity on the affected engineering station and the connected devices.
network
low complexity
phoenixcontact CWE-494
6.5
2020-07-21 CVE-2020-12499 Path Traversal vulnerability in Phoenixcontact Plcnext Engineer 202031
In PHOENIX CONTACT PLCnext Engineer version 2020.3.1 and earlier an improper path sanitation vulnerability exists on import of project files.
4.4