Vulnerabilities > Phoenixcontact > WP 6121 Wxps Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-08-09 CVE-2023-37856 Unspecified vulnerability in Phoenixcontact products
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges is able to gain limited read-access to the device-filesystem through a configuration dialog within the embedded Qt browser .
network
low complexity
phoenixcontact
4.3
2023-08-09 CVE-2023-37857 Unspecified vulnerability in Phoenixcontact products
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated, remote attacker with admin privileges is able to read hardcoded cryptographic keys allowing the attacker to create valid session cookies.
network
low complexity
phoenixcontact
7.2
2023-08-09 CVE-2023-37858 Unspecified vulnerability in Phoenixcontact products
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated, remote attacker with admin privileges is able to read hardcoded cryptographic keys allowing to decrypt an encrypted web application login password.
network
low complexity
phoenixcontact
4.9
2023-08-09 CVE-2023-37859 Unspecified vulnerability in Phoenixcontact products
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 the SNMP daemon is running with root privileges allowing a remote attacker with knowledge of the SNMPv2 r/w community string to execute system commands as root.
network
low complexity
phoenixcontact
7.2