<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Wed, 07 Oct 2026 11:20:12 +0000</lastBuildDate>
    <item>
      <title>CVE-2023-46141 — Phoenix Contact: Automation Worx and classic line controllers prone to Incorrect Permission Assignment for Critical Res…</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2023-46141</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PHOENIX CONTACT Automation Worx Software Suite, PHOENIX CONTACT AXC 1050, PHOENIX CONTACT AXC 1050 XC, PHOENIX CONTACT AXC 3050, PHOENIX CONTACT Config+, PHOENIX CONTACT FC 350 PCI ETH, PHOENIX CONTACT ILC1x0, PHOENIX CONTACT ILC1x1, PHOENIX CONTACT ILC 3xx, PHOENIX CONTACT PC Worx and 8 more&lt;/p&gt;
&lt;p&gt;Incorrect Permission Assignment for Critical Resource vulnerability in multiple products of the PHOENIX CONTACT classic line allow an remote unauthenticated attacker to gain full access of the affected device.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PHOENIX CONTACT Automation Worx Software Suite, PHOENIX CONTACT AXC 1050, PHOENIX CONTACT AXC 1050 XC, PHOENIX CONTACT AXC 3050, PHOENIX CONTACT Config+, PHOENIX CONTACT FC 350 PCI ETH, PHOENIX CONTACT ILC1x0, PHOENIX CONTACT ILC1x1, PHOENIX CONTACT ILC 3xx, PHOENIX CONTACT PC Worx and 8 more&lt;/p&gt;
&lt;p&gt;Incorrect Permission Assignment for Critical Resource vulnerability in multiple products of the PHOENIX CONTACT classic line allow an remote unauthenticated attacker to gain full access of the affected device.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2023-46141</guid>
    </item>
    <item>
      <title>VDE-2023-055 — Phoenix Contact: Automation Worx and classic line controllers prone to Incorrect Permission Assignment for Critical Res…</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2023-055</link>
      <description>&lt;p&gt;Phoenix Contact classic line industrial controllers are developed and designed for the use in closed industrial networks. The controllers don&amp;#39;t feature a function to check integrity and authenticity of the application (e.g.: logic files, executable logic, configurations).
Logic files generated by Automation Worx could be manipulated on the engineering station and loaded into the PLC without tamper detection. In addition, the tampering can be done by specially designed attacks in such a way that it remains hidden, and the logic program modifies its own code, making it difficult to determine the impact of a malicious program.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Phoenix Contact classic line industrial controllers are developed and designed for the use in closed industrial networks. The controllers don&amp;#39;t feature a function to check integrity and authenticity of the application (e.g.: logic files, executable logic, configurations).
Logic files generated by Automation Worx could be manipulated on the engineering station and loaded into the PLC without tamper detection. In addition, the tampering can be done by specially designed attacks in such a way that it remains hidden, and the logic program modifies its own code, making it difficult to determine the impact of a malicious program.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2023-055</guid>
    </item>
  </channel>
</rss>
