Vulnerability Description
An unauthenticated, remote attacker could upload malicious logic to devices based on ProConOS/ProConOS eCLR in order to gain full control over the device.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Phoenixcontact | Axc 1050 Firmware | All versions |
| Phoenixcontact | Axc 1050 | - |
| Phoenixcontact | Axc 1050 Xc Firmware | All versions |
| Phoenixcontact | Axc 1050 Xc | - |
| Phoenixcontact | Axc 3050 Firmware | All versions |
| Phoenixcontact | Axc 3050 | - |
| Phoenixcontact | Fc 350 Pci Eth Firmware | All versions |
| Phoenixcontact | Fc 350 Pci Eth | - |
| Phoenixcontact | Ilc1X0 Firmware | All versions |
| Phoenixcontact | Ilc1X0 | - |
| Phoenixcontact | Ilc1X1 Firmware | All versions |
| Phoenixcontact | Ilc1X1 | - |
| Phoenixcontact | Ilc 1X1 Gsm\/Gprs Firmware | All versions |
| Phoenixcontact | Ilc 1X1 Gsm\/Gprs | - |
| Phoenixcontact | Ilc 3Xx Firmware | All versions |
| Phoenixcontact | Ilc 3Xx | - |
| Phoenixcontact | Pc Worx Rt Basic Firmware | All versions |
| Phoenixcontact | Pc Worx Rt Basic | - |
| Phoenixcontact | Pc Worx Srt Firmware | All versions |
| Phoenixcontact | Pc Worx Srt | - |
Related Weaknesses (CWE)
References
- https://cert.vde.com/en/advisories/VDE-2022-025/ExploitThird Party Advisory
- https://cert.vde.com/en/advisories/VDE-2022-025/ExploitThird Party Advisory
FAQ
What is CVE-2022-31800?
CVE-2022-31800 is a vulnerability with a CVSS score of 9.8 (CRITICAL). An unauthenticated, remote attacker could upload malicious logic to devices based on ProConOS/ProConOS eCLR in order to gain full control over the device.
How severe is CVE-2022-31800?
CVE-2022-31800 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2022-31800?
Check the references section above for vendor advisories and patch information. Affected products include: Phoenixcontact Axc 1050 Firmware, Phoenixcontact Axc 1050, Phoenixcontact Axc 1050 Xc Firmware, Phoenixcontact Axc 1050 Xc, Phoenixcontact Axc 3050 Firmware.