Show filters
158 Total Results
Displaying 151-158 of 158
Sort by:
Attacker Value
Unknown
CVE-2017-6039
Disclosure Date: June 02, 2017 (last updated November 26, 2024)
A Use of Hard-Coded Password issue was discovered in Phoenix Broadband PowerAgent SC3 BMS, all versions prior to v6.87. Use of a hard-coded password may allow unauthorized access to the device.
0
Attacker Value
Unknown
CVE-2017-7937
Disclosure Date: May 19, 2017 (last updated November 26, 2024)
An Improper Authentication issue was discovered in Phoenix Contact GmbH mGuard firmware versions 8.3.0 to 8.4.2. An attacker may be able to gain unauthorized access to the user firewall when RADIUS servers are unreachable.
0
Attacker Value
Unknown
CVE-2017-7935
Disclosure Date: May 19, 2017 (last updated November 26, 2024)
A Resource Exhaustion issue was discovered in Phoenix Contact GmbH mGuard firmware versions 8.3.0 to 8.4.2. An attacker may compromise the device's availability by performing multiple initial VPN requests.
0
Attacker Value
Unknown
CVE-2017-5159
Disclosure Date: February 13, 2017 (last updated November 26, 2024)
An issue was discovered on Phoenix Contact mGuard devices that have been updated to Version 8.4.0. When updating an mGuard device to Version 8.4.0 via the update-upload facility, the update will succeed, but it will reset the password of the admin user to its default value.
0
Attacker Value
Unknown
CVE-2014-9195
Disclosure Date: January 17, 2015 (last updated October 05, 2023)
Phoenix Contact ProConOs and MultiProg do not require authentication, which allows remote attackers to execute arbitrary commands via protocol-compliant traffic.
0
Attacker Value
Unknown
CVE-2010-5223
Disclosure Date: September 06, 2012 (last updated October 05, 2023)
Multiple untrusted search path vulnerabilities in Phoenix Project Manager 2.1.0.8 allow local users to gain privileges via a Trojan horse (1) wbtrv32.dll or (2) w3btrv7.dll file in the current working directory, as demonstrated by a directory that contains a .ppx file. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2008-7199
Disclosure Date: September 10, 2009 (last updated October 04, 2023)
Phoenix Contact FL IL 24 BK-PAC allows remote attackers to cause a denial of service (hang) via (1) unspecified manipulations as demonstrated by a Nessus scan or (2) malformed input to TCP port 502.
0
Attacker Value
Unknown
CVE-2006-5090
Disclosure Date: September 29, 2006 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Phoenix Evolution CMS (PECMS) allow remote attackers to inject arbitrary web script or HTML via the (1) mod or (2) action parameters in index.php, or the (3) pageid parameter in modules/pageedit/index.php. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
0