QID 590568

Date Published: 2021-12-23

QID 590568: PHOENIX CONTACT FL SWITCH Multiple Vulnerabilities (ICSA-18-011-03)

AFFECTED PRODUCTS
All FL SWITCH 3xxx, 4xxx, and 48xxx Series products running firmware Version 1.0 to 1.32 are affected.

QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning

Successful exploitation of these vulnerabilities may allow an unauthenticated remote attacker to gain administrative privileges and expose information to unauthenticated users.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as Critical - 10 severity.
  • Solution

    Customers are advised to refer to CERT MITIGATIONS section ICSA-18-011-03 for affected packages and patching details.

    Vendor References

    CVEs related to QID 590568

    Software Advisories
    Advisory ID Software Component Link
    ICSA-18-011-03 URL Logo www.us-cert.gov/ics/advisories/ICSA-18-011-03