CVE-2023-46143
Phoenixcontact · Published December 14, 2023
7.5
CVSS v3.1
HIGHPatch availableGet patch
Description
Download of Code Without Integrity Check vulnerability in PHOENIX CONTACT classic line PLCs allows an unauthenticated remote attacker to modify some or all applications on a PLC.
Affected Products
- Automationworx Software Suite
- AXC 1050 Firmware
- AXC 1050 XC Firmware
- AXC 3050 Firmware
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N