QID 590999
Date Published: 2022-08-24
QID 590999: PHOENIX CONTACT FL MGUARD, TC MGUARD, mGuard Device Manager and FL WLAN devices Vulnerability (VDE-2022-013)
AFFECTED PRODUCTS
For following products affected version is 8.8.5 and prior
FL MGUARD RS2000 TX/TX VPN
FL MGUARD RS2005 TX VPN
TC MGUARD RS2000 3G VPN
FL MGUARD RS4000 TX/TX
FL MGUARD RS4000 TX/TX VPN
FL MGUARD RS4004 TX/DTX
FL MGUARD RS4004 TX/DTX VPN
TC MGUARD RS4000 3G VPN
FL MGUARD RS2000 TX/TX-B
FL MGUARD RS4000 TX/TX-P
FL MGUARD RS4000 TX/TX-M
FL MGUARD PCI4000
FL MGUARD PCI4000 VPN
FL MGUARD PCIE4000
FL MGUARD PCIE4000 VPN
FL MGUARD DELTA TX/TX
FL MGUARD DELTA TX/TX VPN
FL MGUARD SMART2
FL MGUARD SMART2 VPN
FL MGUARD CORE TX
FL MGUARD CORE TX VPN
FL MGUARD SMART2 VPN/K1
FL MGUARD RS4000 TX/TX VPN/K1
FL MGUARD PCIE4000 VPN/K2
FL MGUARD RS4000 VPN/K2
FL MGUARD PCI4000 VPN/K2
TC MGUARD RS2000 4G VPN
TC MGUARD RS4000 4G VPN
TC MGUARD RS4000 4G VZW VPN
TC MGUARD RS2000 4G VZW VPN
TC MGUARD RS4000 4G ATT VPN
TC MGUARD RS2000 4G ATT VPN
FL MGUARD GT/GT
FL MGUARD GT/GT VPN
FL MGUARD CENTERPORT
FL MGUARD CENTERPORT VPN-1000
For following products affected version is 1.13.0.1 and prior
FL MGUARD DM UNLIMITED
For following products affected version is 2.70 and prior
FL WLAN 1010
FL WLAN 1011
FL WLAN 1100
FL WLAN 1101
FL WLAN 2010
FL WLAN 2011
FL WLAN 2100
FL WLAN 2101
For following products affected version is 3.21 and prior
FL WLAN 5100
FL WLAN 5101
FL WLAN 5102
FL WLAN 5110
FL WLAN 5111
QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning
By sending a crafted certificate, attackers may trigger an infinite loop in the receiving service. This may cause the service to become unavailable. Additionally, the availability of other services may be reduced due to high CPU load.
Customers are advised to refer to CERT MITIGATIONS section VDE-2022-013 for affected packages and patching details.
CVEs related to QID 590999
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| VDE-2022-013 |
|