CVE-2019-12870
published 2019-06-24CVE-2019-12870: An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86. A manipulated PC Worx or Config+…
PriorityP349high8.8CVSS 3.0
AVNACLPRNUIRSUCHIHAH
EPSS
3.71%
88.5th percentile
An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86. A manipulated PC Worx or Config+ project file could lead to an Uninitialized Pointer and remote code execution. The attacker needs to get access to an original PC Worx or Config+ project file to be able to manipulate it. After manipulation, the attacker needs to exchange the original file with the manipulated one on the application programming workstation.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| phoenixcontact | automationworx_software_suite | <= 1.86 | — |
CVSS provenance
nvdv3.08.8HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-q6f5-9m85-j5v5: An issue was discovered in PHOENIX CONTACT PC Worx through 1
ghsa_unreviewed·2022-05-24
CVE-2019-12870 [HIGH] CWE-824 GHSA-q6f5-9m85-j5v5: An issue was discovered in PHOENIX CONTACT PC Worx through 1
An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86. A manipulated PC Worx or Config+ project file could lead to an Uninitialized Pointer and remote code execution. The attacker needs to get access to an original PC Worx or Config+ project file to be able to manipulate it. After manipulation, the attacker needs to exchange the original file with the manipulated one on the application programming workstation.
CISA ICS
PHOENIX CONTACT Automation Worx Software Suite
cisa_ics·2019-08-05·CVSS 8.8
[HIGH] PHOENIX CONTACT Automation Worx Software Suite
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
PHOENIX CONTACT Automation Worx Software Suite
Last RevisedAugust 05, 2019
Alert CodeICSA-19-171-01
## 1. EXECUTIVE SUMMARY
- CVSS v3 7.5
- ATTENTION: Exploitable remotely/low skill level to exploit
- Vendor: Phoenix Contact
- Equipment: Automation Worx Software Suite
- Vulnerabilities: Access of Uninitialized Pointer, Out-of-bounds Read, Use After Free
## 2. RISK EVALUATION
Successful exploitation of these vulnerabilities could allow an attacker, with access to an original PC Worx or Config+ project file, to perform remote code execution.
## 3. TECHNICAL DETAILS
## 3.1
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2019-06-24
Published