Authenticated Command Injection in... CVE-2020-9436, CVE-2020-9435

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

``` SEC Consult Vulnerability Lab Security Advisory < 20200312-0 > ======================================================================= title: Authenticated Command Injection product: Phoenix Contact TC Router & TC Cloud Client vulnerable version: <=2.05.3 & <=2.03.17 & <=1.03.17 fixed version: 2.05.4 & 2.03.18 & 1.03.18 CVE number: CVE-2020-9436, CVE-2020-9435 impact: High homepage: https://www.phoenixcontact.com/ found: 2020-01-23 by: T. Weber (Office Vienna) SEC Consult Vulnerability Lab An integrated part of SEC Consult Europe | Asia | North America https://www.sec-consult.com ======================================================================= Vendor description: ------------------- "Phoenix Contact is a globally present, Germany-based market leader. Our group is synonymous with future-oriented components, systems, and solutions in the fields of electrical engineering, electronics, and automation. A global network across more than 100 countries and 15,000 employees...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息