CNNVD-202512-1510 Information

CNNVD ID

CNNVD-202512-1510

CVE-2025-41695

  • CNNVD Published: 2025-12-09

Description (Chinese)

PHOENIX CONTACT FL SWITCH是德国菲尼克斯电气(PHOENIX CONTACT)公司的一款工业级以太网交换机。 Phoenix Contact FL SWITCH 3.50之前版本存在跨站脚本漏洞,该漏洞源于在网页生成过程中输入中和不当。

Description (English)

PHOENIX CONTATT FL SWITCH is an industrial Ethernet switchboard of PHOENIX CONTACT, Germany. The pre-Phoenix Contact FL SWITCH 3.50 version had a cross-site script loophole, which originated in inappropriate input during web-page generation.

Hazard Level

Medium

Vulnerability Type

跨站脚本

Affected Vendor

菲尼克斯电气

Published

2025-12-09

Last Modified

2026-02-24

References

https://certvde.com/de/advisories/VDE-2025-071

Patch

https://www.phoenixcontact.com/en-us/company/phoenix-contact-group

Share on: