Vulnerability Description
Download of Code Without Integrity Check vulnerability in PHOENIX CONTACT classic line PLCs allows an unauthenticated remote attacker to modify some or all applications on a PLC.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Phoenixcontact | Automationworx Software Suite | All versions |
| Phoenixcontact | Axc 1050 Firmware | All versions |
| Phoenixcontact | Axc 1050 | - |
| Phoenixcontact | Axc 1050 Xc Firmware | All versions |
| Phoenixcontact | Axc 1050 Xc | - |
| Phoenixcontact | Axc 3050 Firmware | All versions |
| Phoenixcontact | Axc 3050 | - |
| Phoenixcontact | Config\+ | All versions |
| Phoenixcontact | Fc 350 Pci Eth Firmware | All versions |
| Phoenixcontact | Fc 350 Pci Eth | - |
| Phoenixcontact | Ilc1X0 Firmware | All versions |
| Phoenixcontact | Ilc1X0 | - |
| Phoenixcontact | Ilc1X1 Firmware | All versions |
| Phoenixcontact | Ilc1X1 | - |
| Phoenixcontact | Ilc 3Xx Firmware | All versions |
| Phoenixcontact | Ilc 3Xx | - |
| Phoenixcontact | Pc Worx | All versions |
| Phoenixcontact | Pc Worx Express | All versions |
| Phoenixcontact | Pc Worx Rt Basic Firmware | All versions |
| Phoenixcontact | Pc Worx Rt Basic | - |
Related Weaknesses (CWE)
References
- https://cert.vde.com/en/advisories/VDE-2023-057/Third Party Advisory
- https://cert.vde.com/en/advisories/VDE-2023-057/Third Party Advisory
FAQ
What is CVE-2023-46143?
CVE-2023-46143 is a vulnerability with a CVSS score of 7.5 (HIGH). Download of Code Without Integrity Check vulnerability in PHOENIX CONTACT classic line PLCs allows an unauthenticated remote attacker to modify some or all applications on a PLC.
How severe is CVE-2023-46143?
CVE-2023-46143 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-46143?
Check the references section above for vendor advisories and patch information. Affected products include: Phoenixcontact Automationworx Software Suite, Phoenixcontact Axc 1050 Firmware, Phoenixcontact Axc 1050, Phoenixcontact Axc 1050 Xc Firmware, Phoenixcontact Axc 1050 Xc.