CVE-2024-43391: Phoenix Contact: Firewall reconfiguration through the FW_PORTFORWARDING.SRC_IP in MGUARD devices
A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, packet forwarding, network access control or NAT through the FWPORTFORWARDING.SRCIP environment variable which can lead to a DoS.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-43391?
CVE-2024-43391 has a low severity rating, but it can allow remote attackers to perform unauthorized configuration changes.
How do I fix CVE-2024-43391?
To mitigate CVE-2024-43391, upgrade the firewall services to versions beyond 8.9.3 for the affected Phoenix Contact Tc Mguard firmware.
Which devices are affected by CVE-2024-43391?
CVE-2024-43391 affects several Phoenix Contact Tc Mguard firewall devices running firmware versions up to 8.9.3.
What can a successful exploit of CVE-2024-43391 lead to?
Exploitation of CVE-2024-43391 may lead to denial of service (DoS) conditions through unauthorized configuration changes.
Is CVE-2024-43391 being actively exploited?
There are no specific indications of active exploitation for CVE-2024-43391, but the vulnerability poses a potential threat.