CVE-2023-46144: Phoenixcontact Axc F 1152 Firmware
Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.
A download of code without integrity check vulnerability in PLCnext products allows an remote attacker with low privileges to compromise integrity on the affected engineering station and the connected devices.
Affected products
- Phoenixcontact Axc F 1152 Firmware: up to and including 2024.0
- Phoenixcontact Axc F 2152 Firmware: up to and including 2024.0
- Phoenixcontact Axc F 3152 Firmware: up to and including 2024.0
- Phoenixcontact Bpc 9102s Firmware: up to and including 2024.0
- Phoenixcontact Epc 1502 Firmware: up to and including 2024.0
- Phoenixcontact Epc 1522 Firmware: up to and including 2024.0
- Phoenixcontact Plcnext Engineer: up to and including 2024.0
- Phoenixcontact Rfc 4072r Firmware: up to and including 2024.0
- Phoenixcontact Rfc 4072s Firmware: up to and including 2024.0
Published 2023-12-14. Last modified 2026-06-17.