CVE-2018-25112: PHOENIX CONTACT: ILC 1x1 ETH Denial of Service
Published Jun 4, 2025
·Updated
An unauthenticated remote attacker may use an uncontrolled resource consumption in the IEC 61131 program of the affected products by creating large amounts of network traffic that needs to be handled by the ILC. This results in a Denial-of-Service of the device.
Affected Software
1 affected component
Phoenix Contact ILC 1x1 ETH
Event History
Jun 4, 2025
CVE Published
via MITRE·09:37 AM
Data Sourced
via MITRE·09:37 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-25112?
CVE-2018-25112 is classified as a Denial-of-Service vulnerability.
2
How do I fix CVE-2018-25112?
To mitigate CVE-2018-25112, you should implement network traffic controls to limit excessive data flow to the device.
3
What is the impact of CVE-2018-25112?
CVE-2018-25112 allows remote attackers to cause a Denial-of-Service condition by flooding the device with traffic.
4
Which products are affected by CVE-2018-25112?
The affected product for CVE-2018-25112 is the PHOENIX CONTACT ILC 1x1 ETH.
5
Is CVE-2018-25112 exploitable without authentication?
Yes, CVE-2018-25112 can be exploited by unauthenticated remote attackers.