Phoenix Contact FL SWITCH 2005
cpe:2.3:h:phoenixcontact:fl_switch_2005:*:*:*:*:*:*:*, +1 more
- < 3.53
- 3.50
A stack-based buffer overflow vulnerability has been identified in the file installation workflow of certain Phoenix Contact FL SWITCH devices. This vulnerability affects multiple models within the FL SWITCH 2xxx, FL SWITCH TSN 23xx, and FL SWITCH 59xx series, all running firmware prior to version 3.53. The issue allows a high-privileged attacker to send oversized POST parameters that overflow a fixed-size stack buffer in an internal process, causing a denial-of-service condition on the device.
Exploitation of this vulnerability leads to a denial-of-service condition, causing the device to become unresponsive or to fail in its normal operations.
Users are advised to update to the latest firmware version 3.53, which addresses this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.