CNNVD-202507-869 Information

CNNVD ID

CNNVD-202507-869

CVE-2025-41665

  • CNNVD Published: 2025-07-08

Description (Chinese)

PHOENIX CONTACT AXC F 1152等都是德国菲尼克斯电气(PHOENIX CONTACT)公司的一款控制器设备。 PHOENIX CONTACT多款产品存在安全漏洞,该漏洞源于配置文件默认权限不正确,可能导致低权限攻击者强制看门狗重启PLC。

Description (English)

PHOENIX CONTACT AXC F 1152 and others are all control equipment of PHOENIX CONTACT, Germany. PHOENIX CONTATT has a security loophole in its multiple products, which stems from incorrect default permissions in the configuration file, which may lead to the re-launching of PLC by a low-authority attacker.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Phoenix Site

Published

2025-07-08

Last Modified

2026-02-24

References

https://certvde.com/en/advisories/VDE-2025-054

Patch

https://www.phoenixcontact.com/en-us/

Share on: