Security Advisory

CVE-2017-16743

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-01-12 20:00:00
Last updated 2024-08-05 20:35:20
Assigner icscert
CVSS score not scored
State PUBLISHED

Description

An Improper Authorization issue was discovered in PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, and 48xxx Series products running firmware Version 1.0 to 1.32. A remote unauthenticated attacker may be able to craft special HTTP requests allowing an attacker to bypass web-service authentication allowing the attacker to obtain administrative privileges on the device.