CVE-2023-3526: PHOENIX CONTACT: Cross-site Scripting vulnerability in TC ROUTER, TC CLOUD CLIENT and CLOUD CLIENT devices
In PHOENIX CONTACTs TC ROUTER and TC CLOUD CLIENT in versions prior to 2.07.2 as well as CLOUD CLIENT 1101T-TX/TX prior to 2.06.10 an unauthenticated remote attacker could use a reflective XSS within the license viewer page of the devices in order to execute code in the context of the user's browser.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2023-3526.
What is the severity of CVE-2023-3526?
CVE-2023-3526 has a severity rating of 9.6 (Critical).
Which software versions are affected by CVE-2023-3526?
PHOENIX CONTACTs TC ROUTER and TC CLOUD CLIENT versions prior to 2.07.2, as well as CLOUD CLIENT 1101T-TX/TX prior to 2.06.10, are affected by CVE-2023-3526.
How can an attacker exploit CVE-2023-3526?
An unauthenticated remote attacker can exploit CVE-2023-3526 by using a reflective XSS within the license viewer page of the affected devices to execute code in the context of the user's browser.
Are there any references for CVE-2023-3526?
Yes, you can refer to the following links for more information on CVE-2023-3526: [Packetstorm Security](http://packetstormsecurity.com/files/174152/Phoenix-Contact-TC-Cloud-TC-Router-2.x-XSS-Memory-Consumption.html), [SecLists](http://seclists.org/fulldisclosure/2023/Aug/12), [VDE Advisory](https://cert.vde.com/en/advisories/VDE-2023-017).