Lucene search

K
cveCERTVDECVE-2023-2673
HistoryJun 13, 2023 - 7:15 a.m.

CVE-2023-2673

2023-06-1307:15:46
CWE-20
CERTVDE
web.nvd.nist.gov
19
cve-2023-2673
improper input validation
phoenix contact
fl/tc mguard
udp
vulnerability
nvd

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

AI Score

5.3

Confidence

High

EPSS

0.001

Percentile

19.7%

Improper Input Validation vulnerability in PHOENIX CONTACT FL/TC MGUARD Family in multiple versions may allowΒ UDP packets to bypass the filter rules and access the solely connected device behind the MGUARD which can be used for flooding attacks.

Affected configurations

Nvd
Node
phoenixcontactfl_mguard_2102Match-
AND
phoenixcontactfl_mguard_2102_firmwareRange≀10.1.1
Node
phoenixcontactfl_mguard_4102_pciMatch-
AND
phoenixcontactfl_mguard_4102_pci_firmwareRange≀10.1.1
Node
phoenixcontactfl_mguard_4102_pcieMatch-
AND
phoenixcontactfl_mguard_4102_pcie_firmwareRange≀10.1.1
Node
phoenixcontactfl_mguard_4302Match-
AND
phoenixcontactfl_mguard_4302_firmwareRange≀10.1.1
Node
phoenixcontactfl_mguard_centerportMatch-
AND
phoenixcontactfl_mguard_centerport_firmwareRange≀8.9.0
Node
phoenixcontactfl_mguard_centerport_vpn-1000Match-
AND
phoenixcontactfl_mguard_centerport_vpn-1000_firmwareRange≀8.9.0
Node
phoenixcontactfl_mguard_core_txMatch-
AND
phoenixcontactfl_mguard_core_tx_firmwareRange≀8.9.0
Node
phoenixcontactfl_mguard_core_tx_vpnMatch-
AND
phoenixcontactfl_mguard_core_tx_vpn_firmwareRange≀8.9.0
Node
phoenixcontactfl_mguard_delta_tx\/tx_firmwareRange≀8.9.0
AND
phoenixcontactfl_mguard_delta_tx\/txMatch-
Node
phoenixcontactfl_mguard_delta_tx\/tx_vpn_firmwareRange≀8.9.0
AND
phoenixcontactfl_mguard_delta_tx\/tx_vpnMatch-
Node
phoenixcontactfl_mguard_gt\/gt_firmwareRange≀8.9.0
AND
phoenixcontactfl_mguard_gt\/gtMatch-
Node
phoenixcontactfl_mguard_gt\/gt_vpn_firmwareRange≀8.9.0
AND
phoenixcontactfl_mguard_gt\/gt_vpnMatch-
Node
phoenixcontactfl_mguard_pci4000_firmwareRange≀8.9.0
AND
phoenixcontactfl_mguard_pci4000Match-
Node
phoenixcontactfl_mguard_pci4000_vpn_firmwareRange≀8.9.0
AND
phoenixcontactfl_mguard_pci4000_vpnMatch-
Node
phoenixcontactfl_mguard_pcie4000_firmwareRange≀8.9.0
AND
phoenixcontactfl_mguard_pcie4000Match-
Node
phoenixcontactfl_mguard_pcie4000_vpn_firmwareRange≀8.9.0
AND
phoenixcontactfl_mguard_pcie4000_vpnMatch-
Node
phoenixcontactfl_mguard_rs2000_tx\/tx-b_firmwareRange≀8.9.0
AND
phoenixcontactfl_mguard_rs2000_tx\/tx-bMatch-
Node
phoenixcontactfl_mguard_rs2000_tx\/tx_vpn_firmwareRange≀8.9.0
AND
phoenixcontactfl_mguard_rs2000_tx\/tx_vpnMatch-
Node
phoenixcontactfl_mguard_rs2005_tx_vpn_firmwareRange≀8.9.0
AND
phoenixcontactfl_mguard_rs2005_tx_vpnMatch-
Node
phoenixcontactfl_mguard_rs4000_tx\/tx-m_firmwareRange≀8.9.0
AND
phoenixcontactfl_mguard_rs4000_tx\/tx-mMatch-
Node
phoenixcontactfl_mguard_rs4000_tx\/tx-p_firmwareRange≀8.9.0
AND
phoenixcontactfl_mguard_rs4000_tx\/tx-pMatch-
Node
phoenixcontactfl_mguard_rs4000_tx\/tx_vpn_firmwareRange≀8.9.0
AND
phoenixcontactfl_mguard_rs4000_tx\/tx_vpnMatch-
Node
phoenixcontactfl_mguard_rs4004_tx\/dtx_firmwareRange≀8.9.0
AND
phoenixcontactfl_mguard_rs4004_tx\/dtxMatch-
Node
phoenixcontactfl_mguard_rs4004_tx\/dtx_vpn_firmwareRange≀8.9.0
AND
phoenixcontactfl_mguard_rs4004_tx\/dtx_vpnMatch-
Node
phoenixcontactfl_mguard_smart2_firmwareRange≀8.9.0
AND
phoenixcontactfl_mguard_smart2Match-
Node
phoenixcontactfl_mguard_smart2_vpn_firmwareRange≀8.9.0
AND
phoenixcontactfl_mguard_smart2_vpnMatch-
VendorProductVersionCPE
phoenixcontactfl_mguard_2102-cpe:2.3:h:phoenixcontact:fl_mguard_2102:-:*:*:*:*:*:*:*
phoenixcontactfl_mguard_2102_firmware*cpe:2.3:o:phoenixcontact:fl_mguard_2102_firmware:*:*:*:*:*:*:*:*
phoenixcontactfl_mguard_4102_pci-cpe:2.3:h:phoenixcontact:fl_mguard_4102_pci:-:*:*:*:*:*:*:*
phoenixcontactfl_mguard_4102_pci_firmware*cpe:2.3:o:phoenixcontact:fl_mguard_4102_pci_firmware:*:*:*:*:*:*:*:*
phoenixcontactfl_mguard_4102_pcie-cpe:2.3:h:phoenixcontact:fl_mguard_4102_pcie:-:*:*:*:*:*:*:*
phoenixcontactfl_mguard_4102_pcie_firmware*cpe:2.3:o:phoenixcontact:fl_mguard_4102_pcie_firmware:*:*:*:*:*:*:*:*
phoenixcontactfl_mguard_4302-cpe:2.3:h:phoenixcontact:fl_mguard_4302:-:*:*:*:*:*:*:*
phoenixcontactfl_mguard_4302_firmware*cpe:2.3:o:phoenixcontact:fl_mguard_4302_firmware:*:*:*:*:*:*:*:*
phoenixcontactfl_mguard_centerport-cpe:2.3:h:phoenixcontact:fl_mguard_centerport:-:*:*:*:*:*:*:*
phoenixcontactfl_mguard_centerport_firmware*cpe:2.3:o:phoenixcontact:fl_mguard_centerport_firmware:*:*:*:*:*:*:*:*
Rows per page:
1-10 of 521

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD 2102",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "10.1.1",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD 4102 PCI",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "10.1.1",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD 4102 PCIE",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "10.1.1",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD 4302",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "10.1.1",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD CENTERPORT",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD CENTERPORT VPN-1000",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD CORE TX",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD CORE TX VPN",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD DELTA TX/TX",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD DELTA TX/TX VPN",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD GT/GT",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD GT/GT VPN",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD PCI4000",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD PCI4000 VPN",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD PCIE4000",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD PCIE4000 VPN",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD RS2000 TX/TX-B",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD RS2000 TX/TX VPN",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD RS2005 TX VPN",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD RS4000 TX/TX-M",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD RS4000 TX/TX-P",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD RS4000 TX/TX VPN",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD RS4000 TX/TX VPN",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD RS4004 TX/DTX",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD RS4004 TX/DTX VPN",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD SMART2",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "FL MGUARD SMART2 VPN",
    "vendor": "PHOENIX CONTACT",
    "versions": [
      {
        "lessThanOrEqual": "8.9.0",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  }
]

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

AI Score

5.3

Confidence

High

EPSS

0.001

Percentile

19.7%

Related for CVE-2023-2673