PHOENIX CONTACT: FL/TC MGUARD prone to Improper Input Validation
CVE-2023-2673
5.3MEDIUM
Summary
Improper Input Validation vulnerability in PHOENIX CONTACT FL/TC MGUARD Family in multiple versions may allow UDP packets to bypass the filter rules and access the solely connected device behind the MGUARD which can be used for flooding attacks.
Affected Version(s)
FL MGUARD 2102 0 <= 10.1.1
FL MGUARD 4102 PCI 0 <= 10.1.1
FL MGUARD 4102 PCIE 0 <= 10.1.1
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved