QID 591070
Date Published: 2022-09-30
QID 591070: Phoenix Contact Innominate mGuard Vulnerability (Security Advisory 2015/01/20-001)
AFFECTED PRODUCTS
All Innominate mGuard devices running with any firmware version up to firmware version 8.1.4 are affected. The firmware versions 8.1.5 and higher are not affected. The mGuard firmware 7.6.7 patch release also fixes this issue.
QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning
An attacker may use specially crafted NTP packets to remotely exploit the NTP vulnerability tracked as CVE-2014-9295 and execute arbitrary code as unprivileged user or to interrupt the NTP service. The mGuard is only vulnerable to this attack if the NTP service on the mGuard is enabled, which is not the default setting. Due to the nature of the NTP protocol exploiting the vulnerability from remote is possible if an attacker can inject malicious packets into communication opened from the mGuard to a remote NTP server.
Customers are advised to refer to CERT MITIGATIONS section Security Advisory 2015/01/20-001 for affected packages and patching details.
- Security Advisory 2015/01/20-001 -
www.phoenixcontact.com/assets/downloads_ed/local_pc/web_dwl_technical_info/innominate_security_advisory_20150120_001_en.pdf
CVEs related to QID 591070
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Security Advisory 2015/01/20-001 |
|