CVE-2025-41666: Phoenix Contact Axc F 1152
High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.
A low privileged remote attacker with file access can replace a critical file used by the watchdog to get read, write and execute access to any file on the device after the watchdog has been initialized.
Affected products
- Phoenix Contact Axc F 1152: before 2025.0.2 (fixed in 2025.0.2)
- Phoenix Contact Axc F 2152: before 2025.0.2 (fixed in 2025.0.2)
- Phoenix Contact Axc F 3152: before 2025.0.2 (fixed in 2025.0.2)
- Phoenix Contact Bpc 9102s: before 2025.0.2 (fixed in 2025.0.2)
- Phoenix Contact Rfc 4072s: before 2025.0.2 (fixed in 2025.0.2)
Published 2025-07-08. Last modified 2026-06-17.