QID 591326

Date Published: 2023-02-03

QID 591326: Phoenix Contact BTP Touch Panels uncontrolled resource consumption Vulnerability (VDE-2020-047)

AFFECTED PRODUCTS
BTP 2043W: all versions
BTP 2070W: all versions
BTP 2102W: all versions

QID Detection Logic:
This QID checks for the Vulnerable version of Phoenix Contact BTP Touch Panels using passive scanning

Uncontrolled Resource Consumption can be exploited to cause the Phoenix Contact HMIs BTP 2043W, BTP 2070W and BTP 2102W in all versions to become unresponsive and not accurately update the display content (Denial of Service).

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as Medium - 5 severity.
  • Solution

    Customers are advised to refer to CERT MITIGATIONS section VDE-2020-047 for affected packages and patching details.

    Vendor References

    CVEs related to QID 591326

    Software Advisories
    Advisory ID Software Component Link