CVE-2018-13992

The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx versions 1.0 to 1.34 allows for plaintext transmission (HTTP) of user credentials by default.
References
Link Resource
https://ics-cert.us-cert.gov/advisories/ICSA-19-024-02 US Government Resource Third Party Advisory
http://www.securityfocus.com/bid/106737 Third Party Advisory VDB Entry
Configurations

Configuration 1


Information

Published : 2019-05-07 06:29

Updated : 2020-08-24 05:37


NVD link : CVE-2018-13992

Mitre link : CVE-2018-13992

Products Affected
No products.
CWE
CWE-311

Missing Encryption of Sensitive Data