CWE
269
Advisory Published
Updated

CVE-2022-22509: PHOENIX CONTACT: FL SWITCH 2xxx series incorrect privilege assignment

First published: Wed Feb 02 2022(Updated: )

In Phoenix Contact FL SWITCH Series 2xxx in version 3.00 an incorrect privilege assignment allows an low privileged user to enable full access to the device configuration.

Credit: info@cert.vde.com

Affected SoftwareAffected VersionHow to fix
Phoenixcontact Fl Switch 2005 Firmware=3.00
Phoenixcontact Fl Switch 2005
Phoenixcontact Fl Switch 2008 Firmware=3.00
Phoenixcontact Fl Switch 2008
Phoenixcontact Fl Switch 2008f Firmware=3.00
Phoenixcontact Fl Switch 2008f
Phoenixcontact Fl Switch 2016 Firmware=3.00
Phoenixcontact Fl Switch 2016
Phoenixcontact Fl Switch 2105 Firmware=3.00
Phoenixcontact Fl Switch 2105
Phoenixcontact Fl Switch 2108 Firmware=3.00
Phoenixcontact Fl Switch 2108
Phoenixcontact Fl Switch 2116 Firmware=3.00
Phoenixcontact Fl Switch 2116
Phoenixcontact Fl Switch 2204-2tc-2sfx Firmware=3.00
Phoenixcontact Fl Switch 2204-2tc-2sfx
Phoenixcontact Fl Switch 2206-2fx Firmware=3.00
Phoenixcontact Fl Switch 2206-2fx
Phoenixcontact Fl Switch 2206-2fx Sm Firmware=3.00
Phoenixcontact Fl Switch 2206-2fx Sm
Phoenixcontact Fl Switch 2206-2fx Sm St Firmware=3.00
Phoenixcontact Fl Switch 2206-2fx Sm St
Phoenixcontact Fl Switch 2206-2fx St Firmware=3.00
Phoenixcontact Fl Switch 2206-2fx St
Phoenixcontact Fl Switch 2206-2sfx Firmware=3.00
Phoenixcontact Fl Switch 2206-2sfx
Phoenixcontact Fl Switch 2206-2sfx Pn Firmware=3.00
Phoenixcontact Fl Switch 2206-2sfx Pn
Phoenixcontact Fl Switch 2206c-2fx Firmware=3.00
Phoenixcontact Fl Switch 2206c-2fx
Phoenixcontact Fl Switch 2207-fx Firmware=3.00
Phoenixcontact Fl Switch 2207-fx
Phoenixcontact Fl Switch 2207-fx Sm Firmware=3.00
Phoenixcontact Fl Switch 2207-fx Sm
Phoenixcontact Fl Switch 2208 Firmware=3.00
Phoenixcontact Fl Switch 2208
Phoenixcontact Fl Switch 2208c Firmware=3.00
Phoenixcontact Fl Switch 2208c
Phoenixcontact Fl Switch 2208 Pn Firmware=3.00
Phoenixcontact Fl Switch 2208 Pn
Phoenixcontact Fl Switch 2212-2tc-2sfx Firmware=3.00
Phoenixcontact Fl Switch 2212-2tc-2sfx
Phoenixcontact Fl Switch 2214-2fx Firmware=3.00
Phoenixcontact Fl Switch 2214-2fx
Phoenixcontact Fl Switch 2214-2fx Sm Firmware=3.00
Phoenixcontact Fl Switch 2214-2fx Sm
Phoenixcontact Fl Switch 2214-2sfx Firmware=3.00
Phoenixcontact Fl Switch 2214-2sfx
Phoenixcontact Fl Switch 2214-2sfx Pn Firmware=3.00
Phoenixcontact Fl Switch 2214-2sfx Pn
Phoenixcontact Fl Switch 2216 Firmware=3.00
Phoenixcontact Fl Switch 2216
Phoenixcontact Fl Switch 2216 Pn Firmware=3.00
Phoenixcontact Fl Switch 2216 Pn
Phoenixcontact Fl Switch 2304-2gc-2sfp Firmware=3.00
Phoenixcontact Fl Switch 2304-2gc-2sfp
Phoenixcontact Fl Switch 2306-2sfp Firmware=3.00
Phoenixcontact Fl Switch 2306-2sfp
Phoenixcontact Fl Switch 2306-2sfp Pn Firmware=3.00
Phoenixcontact Fl Switch 2306-2sfp Pn
Phoenixcontact Fl Switch 2308 Firmware=3.00
Phoenixcontact Fl Switch 2308
Phoenixcontact Fl Switch 2308 Pn Firmware=3.00
Phoenixcontact Fl Switch 2308 Pn
Phoenixcontact Fl Switch 2312-2gc-2sfp Firmware=3.00
Phoenixcontact Fl Switch 2312-2gc-2sfp
Phoenixcontact Fl Switch 2314-2sfp Firmware=3.00
Phoenixcontact Fl Switch 2314-2sfp
Phoenixcontact Fl Switch 2314-2sfp Pn Firmware=3.00
Phoenixcontact Fl Switch 2314-2sfp Pn
Phoenixcontact Fl Switch 2316 Firmware=3.00
Phoenixcontact Fl Switch 2316
Phoenixcontact Fl Switch 2316\/k1 Firmware=3.00
Phoenixcontact Fl Switch 2316\/k1
Phoenixcontact Fl Switch 2316 Pn Firmware=3.00
Phoenixcontact Fl Switch 2316 Pn
Phoenixcontact Fl Switch 2404-2tc-2sfx Firmware=3.00
Phoenixcontact Fl Switch 2404-2tc-2sfx
Phoenixcontact Fl Switch 2406-2sfx Firmware=3.00
Phoenixcontact Fl Switch 2406-2sfx
Phoenixcontact Fl Switch 2406-2sfx Pn Firmware=3.00
Phoenixcontact Fl Switch 2406-2sfx Pn
Phoenixcontact Fl Switch 2408 Firmware=3.00
Phoenixcontact Fl Switch 2408
Phoenixcontact Fl Switch 2408 Pn Firmware=3.00
Phoenixcontact Fl Switch 2408 Pn
Phoenixcontact Fl Switch 2412-2tc-2sfx Firmware=3.00
Phoenixcontact Fl Switch 2412-2tc-2sfx
Phoenixcontact Fl Switch 2414-2sfx Firmware=3.00
Phoenixcontact Fl Switch 2414-2sfx
Phoenixcontact Fl Switch 2414-2sfx Pn Firmware=3.00
Phoenixcontact Fl Switch 2414-2sfx Pn
Phoenixcontact Fl Switch 2416 Firmware=3.00
Phoenixcontact Fl Switch 2416
Phoenixcontact Fl Switch 2416 Pn Firmware=3.00
Phoenixcontact Fl Switch 2416 Pn
Phoenixcontact Fl Switch 2504-2gc-2sfp Firmware=3.00
Phoenixcontact Fl Switch 2504-2gc-2sfp
Phoenixcontact Fl Switch 2506-2sfp Firmware=3.00
Phoenixcontact Fl Switch 2506-2sfp
Phoenixcontact Fl Switch 2506-2sfp\/k1 Firmware=3.00
Phoenixcontact Fl Switch 2506-2sfp\/k1
Phoenixcontact Fl Switch 2506-2sfp Pn Firmware=3.00
Phoenixcontact Fl Switch 2506-2sfp Pn
Phoenixcontact Fl Switch 2508 Firmware=3.00
Phoenixcontact Fl Switch 2508
Phoenixcontact Fl Switch 2508\/k1 Firmware=3.00
Phoenixcontact Fl Switch 2508\/k1
Phoenixcontact Fl Switch 2508 Pn Firmware=3.00
Phoenixcontact Fl Switch 2508 Pn
Phoenixcontact Fl Switch 2512-2gc-2sfp Firmware=3.00
Phoenixcontact Fl Switch 2512-2gc-2sfp
Phoenixcontact Fl Switch 2514-2sfp Firmware=3.00
Phoenixcontact Fl Switch 2514-2sfp
Phoenixcontact Fl Switch 2514-2sfp Pn Firmware=3.00
Phoenixcontact Fl Switch 2514-2sfp Pn
Phoenixcontact Fl Switch 2516 Firmware=3.00
Phoenixcontact Fl Switch 2516
Phoenixcontact Fl Switch 2516 Pn Firmware=3.00
Phoenixcontact Fl Switch 2516 Pn
Phoenixcontact Fl Switch 2608 Firmware=3.00
Phoenixcontact Fl Switch 2608
Phoenixcontact Fl Switch 2608 Pn Firmware=3.00
Phoenixcontact Fl Switch 2608 Pn
Phoenixcontact Fl Switch 2708 Firmware=3.00
Phoenixcontact Fl Switch 2708
Phoenixcontact Fl Switch 2708 Pn Firmware=3.00
Phoenixcontact Fl Switch 2708 Pn
Phoenixcontact Fl Switch 2205 Firmware=3.00
Phoenixcontact Fl Switch 2205

Remedy

Upgrade to firmware 3.10 or higher

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203