Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3007▼ 67 respecto a la semana anterior
Críticas / altas1403▲ 50 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)390▼ 120 respecto a la semana anterior
–

3 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)0.68%—Phoenixcontact FL Switch Smcs 16tx FirmwarePhoenixcontact FL Switch Smcs 14tx/2fx FirmwarePhoenixcontact FL Switch Smcs 14tx/2fx-sm FirmwarePhoenixcontact FL Switch Smcs 8GT Firmware+1125/6/202117/6/2026
In Phoenix Contact FL SWITCH SMCS series products in multiple versions if an attacker sends a hand-crafted TCP-Packet with the Urgent-Flag set and the Urgent-Pointer set to 0, the network stack will crash. The device needs to be rebooted afterwards.
ModificadaMedia (6.1)0.58%—Phoenixcontact FL Switch Smcs 16tx FirmwarePhoenixcontact FL Switch Smcs 14tx/2fx FirmwarePhoenixcontact FL Switch Smcs 14tx/2fx-sm FirmwarePhoenixcontact FL Switch Smcs 8GT Firmware+1125/6/202117/6/2026
In Phoenix Contact FL SWITCH SMCS series products in multiple versions an attacker may insert malicious code via LLDP frames into the web-based management which could then be executed by the client.
ModificadaMedia (5.3)0.95%—Phoenixcontact FL Switch Smcs 16tx FirmwarePhoenixcontact FL Switch Smcs 14tx/2fx FirmwarePhoenixcontact FL Switch Smcs 14tx/2fx-sm FirmwarePhoenixcontact FL Switch Smcs 8GT Firmware+1125/6/202117/6/2026
In Phoenix Contact FL SWITCH SMCS series products in multiple versions fragmented TCP-Packets may cause a Denial of Service of Web-, SNMP- and ICMP-Echo services. The switching functionality of the device is not affected.