CVE-2023-1109
In Phoenix Contacts ENERGY AXC PU Web service an authenticated restricted user of the web frontend can access, read, write and create files throughout the file system using specially crafted URLs via the upload and download functionality of the web…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.76%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
In Phoenix Contacts ENERGY AXC PU Web service an authenticated restricted user of the web frontend can access, read, write and create files throughout the file system using specially crafted URLs via the upload and download functionality of the web service. This may lead to full control of the service.
- CVSS 3.1
- 8.8 HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 0.76% probability · 53th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-22
- Affected
- phoenixcontact/energy axc pu · phoenixcontact/infobox firmware · phoenixcontact/smartrtu axc sg firmware · phoenixcontact/smartrtu axc ig firmware
- Source
- info@cert.vde.com
References
- https://cert.vde.com/en/advisories/VDE-2023-003/Not Applicable
- https://github.com/advisories/GHSA-w923-8w64-f5ghThird Party Advisory
- https://cert.vde.com/en/advisories/VDE-2023-003/Not Applicable
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.