CVE-2023-2673 PUBLISHED CVSS 5.300000190734863 MEDIUM

Improper Input Validation vulnerability in PHOENIX CONTACT FL/TC MGUARD Family in multiple versions may allow UDP packets to bypass the filter rules and access the solely connected device behind the MGUARD which can be used for flooding attacks.

EPSS 0.02% · 6.2th percentile

Risk Scores

CVSS v3.1
5.300000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
EPSS Score
0.02%
6.2th percentile

Affected Products

VendorProductVersions
phoenixcontactfl_mguard_smart2_firmware0, 0
phoenixcontactfl_mguard_4102_pci_firmware0, 0
PHOENIX CONTACTFL MGUARD PCIE4000 VPN0, 0
phoenixcontactfl_mguard_rs4004_tx\/dtx_firmware0, 0
PHOENIX CONTACTFL MGUARD RS4000 TX/TX-P0, 0
PHOENIX CONTACTFL MGUARD GT/GT0, 0
phoenixcontactfl_mguard_core_tx_vpn_firmware0, 0
PHOENIX CONTACTFL MGUARD CENTERPORT0, 0
PHOENIX CONTACTFL MGUARD 43020, 0
phoenixcontactfl_mguard_pcie4000_vpn_firmware0, 0
phoenixcontactfl_mguard_centerport_firmware0, 0
PHOENIX CONTACTFL MGUARD 4102 PCI0, 0
PHOENIX CONTACTFL MGUARD RS4000 TX/TX-M0, 0
PHOENIX CONTACTFL MGUARD RS4000 TX/TX VPN0, 0, 0
phoenixcontactfl_mguard_delta_tx\/tx_vpn_firmware0, 0
phoenixcontactfl_mguard_core_tx_firmware0, 0
phoenixcontactfl_mguard_rs2005_tx_vpn_firmware0, 0
phoenixcontactfl_mguard_rs2000_tx\/tx_vpn_firmware0, 0
phoenixcontactfl_mguard_rs4000_tx\/tx-p_firmware0, 0
PHOENIX CONTACTFL MGUARD CENTERPORT VPN-10000, 0

…and 32 more

Timeline

References

Open in Interactive Console →