ZDI-24-522: (Pwn2Own) Phoenix Contact CHARX SEC-3100 Filename Command Injection Remote Code Execution Vulnerability
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Phoenix Contact CHARX SEC-3100 devices. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The ZDI has assigned a CVSS rating of 6.8. The following CVEs are assigned: CVE-2024-28135.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-24-522?
The severity of ZDI-24-522 is high due to the potential for arbitrary code execution by network-adjacent attackers.
How do I fix ZDI-24-522?
To fix ZDI-24-522, update the firmware of the affected Phoenix Contact CHARX SEC-3100 devices to the latest version provided by the manufacturer.
What kind of attackers can exploit ZDI-24-522?
ZDI-24-522 can be exploited by network-adjacent attackers who can bypass the existing authentication mechanisms.
Are there any workarounds for ZDI-24-522?
Currently, there are no official workarounds for mitigating the risk associated with ZDI-24-522 until a patch is applied.
What devices are affected by ZDI-24-522?
ZDI-24-522 specifically affects Phoenix Contact CHARX SEC-3100 devices.