CVE-2017-16723
11.12.2017, 16:29
A Cross-site Scripting issue was discovered in PHOENIX CONTACT FL COMSERVER BASIC 232/422/485, FL COMSERVER UNI 232/422/485, FL COMSERVER BAS 232/422/485-T, FL COMSERVER UNI 232/422/485-T, FL COM SERVER RS232, FL COM SERVER RS485, and PSI-MODEM/ETH (running firmware versions prior to 1.99, 2.20, or 2.40). The cross-site scripting vulnerability has been identified, which may allow remote code execution.
Vendor | Product | Version |
---|---|---|
phoenixcontact | fl_comserver_basic_232_firmware | 2.40 |
phoenixcontact | fl_comserver_uni_422_firmware | 2.40 |
phoenixcontact | fl_comserver_bas_485-t_firmware | 2.40 |
phoenixcontact | fl_com_server_rs232_firmware | 1.99 |
phoenixcontact | fl_com_server_rs485_firmware | 1.99 |
phoenixcontact | psi-modem\/eth_firmware | 2.20 |
phoenixcontact | fl_comserver_basic_422_firmware | 2.40 |
phoenixcontact | fl_comserver_basic_485_firmware | 2.40 |
phoenixcontact | fl_comserver_uni_485-t_firmware | 2.40 |
phoenixcontact | fl_comserver_uni_485_firmware | 2.40 |
phoenixcontact | fl_comserver_uni_232_firmware | 2.40 |
phoenixcontact | fl_comserver_bas_422_firmware | 2.40 |
phoenixcontact | fl_comserver_bas_232_firmware | 2.40 |
𝑥
= Vulnerable software versions