CVE Intelligence
Skip to main content
HIGH

CVE-2024-43388

CVE-2024-43388 — Phoenix Contact: SNMP reconfiguration due to improper input validation in MGUARD devices

A low privileged remote attacker with write permissions can reconfigure the SNMP service due to improper input validation.

Published Updated Sources: cvelistV5, CERTVDE

Triage

Is it exploited, how likely is exploitation, what does it touch, and how severe do the scoring sources call it.

Exploitation

Unreported

no source claims exploitation

EPSS

1%

chance of exploitation in 30 days

Affects

phoenix contact

39 products listed

CVSS base

8.8

HIGH

CISA SSVC assessment

Three decision points CISA publishes for the CVEs it assesses · SSVC 2.0.3. A stakeholder decision, not a severity score.

CISA

Exploitation

None

none · proof-of-concept · active

Automatable

No

can an attacker script all four kill-chain steps

Technical impact

Total

partial · total control of the vulnerable component

Affected scope

The catalog records vendors and products as separate lists, not pairs, so which product belongs to which vendor is not something this page can say.

Products (39)

fl mguard 2102fl mguard 2105fl mguard 4102 pcifl mguard 4102 pciefl mguard 4302fl mguard 4305fl mguard centerport vpn 1000fl mguard core txfl mguard core tx vpnfl mguard delta tx txfl mguard delta tx tx vpnfl mguard gt gtfl mguard gt gt vpnfl mguard pci4000fl mguard pci4000 vpnfl mguard pcie4000fl mguard pcie4000 vpnfl mguard rs2000 tx tx bfl mguard rs2000 tx tx vpnfl mguard rs2005 tx vpnfl mguard rs4000 tx txfl mguard rs4000 tx tx mfl mguard rs4000 tx tx pfl mguard rs4000 tx tx vpnfl mguard rs4004 tx dtxfl mguard rs4004 tx dtx vpnfl mguard smart2fl mguard smart2 vpntc mguard rs2000 3g vpntc mguard rs2000 4g att vpntc mguard rs2000 4g vpntc mguard rs2000 4g vzw vpntc mguard rs4000 3g vpntc mguard rs4000 4g att vpntc mguard rs4000 4g vpntc mguard rs4000 4g vzw vpnfl mguard smart2 vpn firmwarefl mguard 4305 firmwaretc mguard rs4000 4g vzw vpn firmware

Every base score collected

Sources score independently and disagree; each row says who scored it and under which version.

ScoreVersionSeverityExpl.ImpactSource
8.8CVSS 3.1HIGHcvelistV5

Weakness & attack patterns

  • CWE-94

Attack patterns reported against this CVE. The ATT&CK techniques below are inferred from its weakness class.

  • T1027.006Obfuscated Files or Information: HTML Smuggling
  • T1027.009Obfuscated Files or Information: Embedded Payloads
  • T1564.009Hide Artifacts: Resource Forking

References

1 on the record

Elsewhere on this site

Not in any source we poll

Listed rather than left blank: an empty field and an unmeasured one look identical on screen, and only one is a reason to look elsewhere.

  • No confirmed IOCs, IP addresses, domains, file hashes, or malware artifacts supplied.
  • No organization-specific asset inventory, compensating-control status, or patch deployment evidence supplied.
  • No exploit packet captures, log samples, or incident case IDs supplied.