CVE-2019-9201

Multiple Phoenix Contact devices allow remote attackers to establish TCP sessions to port 1962 and obtain sensitive information or make changes, as demonstrated by using the Create Backup feature to traverse all directories.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:phoenixcontact:ilc_131_eth_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:phoenixcontact:ilc_131_eth:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:phoenixcontact:ilc_131_eth\/xc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:phoenixcontact:ilc_131_eth\/xc:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:phoenixcontact:ilc_151_eth_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:phoenixcontact:ilc_151_eth:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:phoenixcontact:ilc_151_eth\/xc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:phoenixcontact:ilc_151_eth\/xc:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:phoenixcontact:ilc_171_eth_2tx_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:phoenixcontact:ilc_171_eth_2tx:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:phoenixcontact:ilc_191_eth_2tx_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:phoenixcontact:ilc_191_eth_2tx:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:phoenixcontact:ilc_191_me\/an_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:phoenixcontact:ilc_191_me\/an:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:phoenixcontact:axc_1050_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:phoenixcontact:axc_1050:-:*:*:*:*:*:*:*

History

21 Nov 2024, 04:51

Type Values Removed Values Added
References () https://cert.vde.com/en/advisories/VDE-2019-015/ - Third Party Advisory () https://cert.vde.com/en/advisories/VDE-2019-015/ - Third Party Advisory
References () https://medium.com/%40SergiuSechel/misconfiguration-in-ilc-gsm-gprs-devices-leaves-over-1-200-ics-devices-vulnerable-to-attacks-over-82c2d4a91561 - Exploit () https://medium.com/%40SergiuSechel/misconfiguration-in-ilc-gsm-gprs-devices-leaves-over-1-200-ics-devices-vulnerable-to-attacks-over-82c2d4a91561 - Exploit

14 Feb 2024, 16:59

Type Values Removed Values Added
References () https://cert.vde.com/en/advisories/VDE-2019-015/ - () https://cert.vde.com/en/advisories/VDE-2019-015/ - Third Party Advisory
References () https://medium.com/%40SergiuSechel/misconfiguration-in-ilc-gsm-gprs-devices-leaves-over-1-200-ics-devices-vulnerable-to-attacks-over-82c2d4a91561 - () https://medium.com/%40SergiuSechel/misconfiguration-in-ilc-gsm-gprs-devices-leaves-over-1-200-ics-devices-vulnerable-to-attacks-over-82c2d4a91561 - Exploit

21 Jun 2022, 09:15

Type Values Removed Values Added
References
  • (CONFIRM) https://cert.vde.com/en/advisories/VDE-2019-015/ -
Summary Phoenix Contact ILC 131 ETH, ILC 131 ETH/XC, ILC 151 ETH, ILC 151 ETH/XC, ILC 171 ETH 2TX, ILC 191 ETH 2TX, ILC 191 ME/AN, and AXC 1050 devices allow remote attackers to establish TCP sessions to port 1962 and obtain sensitive information or make changes, as demonstrated by using the Create Backup feature to traverse all directories. Multiple Phoenix Contact devices allow remote attackers to establish TCP sessions to port 1962 and obtain sensitive information or make changes, as demonstrated by using the Create Backup feature to traverse all directories.

Information

Published : 2019-02-26 23:29

Updated : 2024-11-21 04:51


NVD link : CVE-2019-9201

Mitre link : CVE-2019-9201

CVE.ORG link : CVE-2019-9201


JSON object : View

Products Affected

phoenixcontact

  • ilc_171_eth_2tx
  • ilc_131_eth\/xc
  • ilc_131_eth\/xc_firmware
  • ilc_191_eth_2tx
  • axc_1050
  • axc_1050_firmware
  • ilc_151_eth\/xc_firmware
  • ilc_191_me\/an
  • ilc_151_eth\/xc
  • ilc_151_eth_firmware
  • ilc_191_eth_2tx_firmware
  • ilc_191_me\/an_firmware
  • ilc_131_eth_firmware
  • ilc_171_eth_2tx_firmware
  • ilc_151_eth
  • ilc_131_eth
CWE
CWE-306

Missing Authentication for Critical Function