Phoenix Contact FL SWITCH Products Command Injection Vulnerability Allowing Arbitrary Command Execution as Root

Vulnerability

A command injection vulnerability has been identified in the Phoenix Contact FL SWITCH 2xxx, FL SWITCH TSN 23xx, and FL SWITCH 59xx firmware prior to version 3.53. This vulnerability allows a high-privileged attacker to send crafted HTTP POST requests that execute arbitrary commands on the underlying Linux operating system with root privileges.

Impact

Exploitation of this vulnerability allows for arbitrary command execution on the device's Linux operating system with root privileges.

Remediation

Users are advised to update to the latest firmware version 3.53, which addresses this vulnerability.

Added: Mar 18, 2026, 8:31 AM
Updated: Mar 18, 2026, 8:31 AM

Vulnerability Rating

Custom Algorithm
spread
4.5
impact
10.0
exploitability
3.0
remediation
7.7
relevance
4.1
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.