<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/csaf_phoenixcontactgmbhcokg/10</id>
  <title>Most recent entries from csaf_phoenixcontactgmbhcokg</title>
  <updated>2026-10-02T09:07:56.511988+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2017-001</id>
    <title>VDE-2017-001 — PHOENIX CONTACT: mGuard IKE daemon remote denial of service</title>
    <updated>2025-05-22T13:03:10+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Openswan 2.6.39 and earlier, which is used in the mGuard firmware version 8.0.0 to 8.5.1, allows remote attackers to cause a denial of service (NULL pointer dereference and IKE daemon restart) via IKEv2 packets that lack expected payloads.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2017-001"/>
    <published>2017-03-07T11:05:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2017-002</id>
    <title>VDE-2017-002 — PHOENIX CONTACT: mGuard device manager (mdm) multiple vulnerabilities in Java SE</title>
    <updated>2025-05-22T13:03:10+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple security issues and vulnerabilities in Oracle Java SE possibly affecting mGuard device manager (mdm / FL MGUARD DM) 1.8.0 and older.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2017-002"/>
    <published>2017-09-07T07:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2017-003</id>
    <title>VDE-2017-003 — PHOENIX CONTACT: WLAN enabled devices utilising WPA2 encryption</title>
    <updated>2025-05-14T12:28:19+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Multiple security issues and vulnerabilities within the WPA2 standard have been identified and publicized by Mr. Mathy Vanhoef of KU Leuven. These vulnerabilities may allow the reinstallation of a pairwise transient key, a group key, or an integrity key on either a wireless client or a wireless access point (AP). In consequence, an attacker could establish a man-in-the-middle position between AP and client facilitating packet decryption and injection.</p>
<p>Update A / Revision 2 - 2017-11-09
* Added a detailed list of affected products</p>
<p>Update B / Revision 3 - 2018-09-24
* Added firmware update information, see section "Solution"</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2017-003"/>
    <published>2017-11-09T16:20:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2017-004</id>
    <title>VDE-2017-004 — PHOENIX CONTACT: FL COMSERVER cross-site scripting (XSS) vulnerability</title>
    <updated>2025-05-14T12:28:19+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A cross-site scripting (XSS) vulnerability affects PHOENIX CONTACT FL COMSERVER products running firmware versions prior to 1.99, 2.20, or 2.40.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2017-004"/>
    <published>2017-12-05T08:50:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2017-006</id>
    <title>VDE-2017-006 — PHOENIX CONTACT: FL SWITCH 3xxx/4xxx/48xx series web-service authentication bypass</title>
    <updated>2025-05-14T13:00:14+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>PHOENIX CONTACT FL SWITCH 3xxx series, FL SWITCH 4xxx series, and FL SWITCH 48xx series products running firmware version 1.0 to 1.32 allow unauthenticated users with network access to gain administrative privileges (CVE-2017-16743) and expose information to unauthenticated users in Monitor Mode (CVE-2017-16741).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2017-006"/>
    <published>2018-01-10T09:36:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2018-001</id>
    <title>VDE-2018-001 — PHOENIX CONTACT: Advisory for mGuard products</title>
    <updated>2025-05-14T12:28:19+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>The integrity of the mGuard firmware atomic update process cannot be guaranteed under all circumstances.</p>
<p>The mGuard atomic update mechanism relies on internal checksums for the integrity verification of some portions of the update packages. The verification of these internal checksums may not always be performed correctly.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2018-001"/>
    <published>2018-01-30T09:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2018-003</id>
    <title>VDE-2018-003 — PHOENIX CONTACT: addressing Meltdown and Spectre vulnerabilities</title>
    <updated>2025-10-01T08:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Several CPUs manufactured by Intel, AMD or based on ARM technology may leak information due to their internal operation if attacked by specifically written software executed on the affected systems.</p>
<p>The information in this advisory is based on the statements of respective manufacturers.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2018-003"/>
    <published>2018-03-23T09:43:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2018-004</id>
    <title>VDE-2018-004 — Phoenix Contact: FL SWITCH 3xxx/4xxx/48xx series through 1.33 allows Command Injection</title>
    <updated>2025-05-14T12:28:19+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An attacker with permission to transfer configuration files to/from the switch or permission to upgrade firmware, is able to execute arbitrary OS shell commands. CGI applications config_transfer.cgi and software_update.cgi are prone to OS command injection through targeted manipulation of their web-request headers.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2018-004"/>
    <published>2018-05-16T05:35:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2018-005</id>
    <title>VDE-2018-005 — Phoenix Contact: FL SWITCH 3xxx/4xxx/48xx series through 1.33 allows Information Exposure</title>
    <updated>2018-05-16T05:35:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Web interface CGI applications may copy the contents of the running configuration file to a commonly accessed file. Clever manipulation of a web login request can expose the contents of this file through to the web browser. A successful web interface login attempt is not required to read the configuration file contents.</p>
<p>FL SWITCH Configuration File can be read by unauthenticated user.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2018-005"/>
    <published>2018-05-16T05:35:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2018-006</id>
    <title>VDE-2018-006 — Phoenix Contact: FL SWITCH 3xxx/4xxx/48xx series through 1.33 has a Stack-based Buffer Overflow</title>
    <updated>2025-05-14T13:00:15+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An attacker may insert a carefully crafted cookie into a GET menu_pxc.cgi or GET index.cgi request to cause a buffer overflow that can initiate a Denial of Service attack and execute arbitrary code.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2018-006"/>
    <published>2018-05-16T10:00:00+00:00</published>
  </entry>
</feed>
