CVE-2024-43393: Phoenix Contact: Configuration changes of the firewall services can lead to DoS in MGUARD devices
A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, packet forwarding, network access control or NAT through the FWINCOMING.FROMIP FWINCOMING.INIP FWOUTGOING.FROMIP FWOUTGOING.INIP FWRULESETS.FROMIP FWRULESETS.INIP environment variable which can lead to a DoS.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-43393?
CVE-2024-43393 is classified with a low severity level due to its requirement for low-privileged remote access.
How do I fix CVE-2024-43393?
To mitigate CVE-2024-43393, ensure that your firmware is updated to version 8.9.3 or later for the affected Phoenix Contact devices.
What systems are affected by CVE-2024-43393?
CVE-2024-43393 affects various Phoenix Contact firmware versions prior to 8.9.3, particularly on tc mGuard routers.
What type of attack is possible due to CVE-2024-43393?
CVE-2024-43393 allows low privileged remote attackers to make unauthorized configuration changes to firewall settings.
Who can exploit CVE-2024-43393?
CVE-2024-43393 can potentially be exploited by low-privileged remote attackers who have network access to the device.