CVE-2022-29898: Remote Code Execution in all versions of various RAD-ISM-900-EN-* devices by PHOENIX CONTACT
On various RAD-ISM-900-EN- devices by PHOENIX CONTACT an admin user could use the configuration file uploader in the WebUI to execute arbitrary code with root privileges on the OS due to an improper validation of an integrity check value in all versions of the firmware.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2022-29898.
What devices are affected by this vulnerability?
Various RAD-ISM-900-EN-* devices by PHOENIX CONTACT are affected by this vulnerability.
What is the severity of CVE-2022-29898?
The severity of CVE-2022-29898 is critical with a CVSS score of 9.1.
How can an admin user exploit this vulnerability?
An admin user can exploit this vulnerability by using the configuration file uploader in the WebUI to execute arbitrary code with root privileges on the OS.
Is there a fix available for this vulnerability?
Please refer to the advisory by VDE CERT for information on available fixes and mitigations: https://cert.vde.com/en/advisories/VDE-2022-018/