CVE Intelligence
Skip to main content
MEDIUM

CVE-2024-7734

CVE-2024-7734 — Phoenix Contact: Multiple mGuard devices are vulnerable to a drain of open file descriptors.

An unauthenticated remote attacker can exploit the behavior of the pathfinder TCP encapsulation service by establishing a high number of TCP connections to the pathfinder TCP encapsulation service. The impact is limited to blocking of valid IPsec VPN peers.

Published Updated Sources: cvelistV5, CERTVDE

Triage

Is it exploited, how likely is exploitation, what does it touch, and how severe do the scoring sources call it.

Exploitation

Unreported

no source claims exploitation

EPSS

0%

chance of exploitation in 30 days

Affects

phoenix contact

39 products listed

CVSS base

5.3

MEDIUM

CISA SSVC assessment

Three decision points CISA publishes for the CVEs it assesses · SSVC 2.0.3. A stakeholder decision, not a severity score.

CISA

Exploitation

None

none · proof-of-concept · active

Automatable

Yes

can an attacker script all four kill-chain steps

Technical impact

Partial

partial · total control of the vulnerable component

Affected scope

The catalog records vendors and products as separate lists, not pairs, so which product belongs to which vendor is not something this page can say.

Products (39)

fl mguard 2102fl mguard 2105fl mguard 4102 pcifl mguard 4102 pciefl mguard 4302fl mguard 4305fl mguard centerport vpn 1000fl mguard core txfl mguard core tx vpnfl mguard delta tx txfl mguard delta tx tx vpnfl mguard gt gtfl mguard gt gt vpnfl mguard pci4000fl mguard pci4000 vpnfl mguard pcie4000fl mguard pcie4000 vpnfl mguard rs2000 tx tx bfl mguard rs2000 tx tx vpnfl mguard rs2005 tx vpnfl mguard rs4000 tx txfl mguard rs4000 tx tx mfl mguard rs4000 tx tx pfl mguard rs4000 tx tx vpnfl mguard rs4004 tx dtxfl mguard rs4004 tx dtx vpnfl mguard smart2fl mguard smart2 vpntc mguard rs2000 3g vpntc mguard rs2000 4g att vpntc mguard rs2000 4g vpntc mguard rs2000 4g vzw vpntc mguard rs4000 3g vpntc mguard rs4000 4g att vpntc mguard rs4000 4g vpntc mguard rs4000 4g vzw vpnfl mguard smart2 vpn firmwarefl mguard 4305 firmwaretc mguard rs4000 4g vzw vpn firmware

Every base score collected

Sources score independently and disagree; each row says who scored it and under which version.

ScoreVersionSeverityExpl.ImpactSource
5.3CVSS 3.1MEDIUMcvelistV5

Weakness & attack patterns

  • CWE-770

Attack patterns reported against this CVE. The ATT&CK techniques below are inferred from its weakness class.

  • T1498.001Network Denial of Service: Direct Network Flood
  • T1499Endpoint Denial of Service
  • T1499.003Endpoint Denial of Service: Application Exhaustion Flood

References

1 on the record

Elsewhere on this site

Not in any source we poll

Listed rather than left blank: an empty field and an unmeasured one look identical on screen, and only one is a reason to look elsewhere.

  • No confirmed IOCs, IP addresses, domains, file hashes, or malware artifacts supplied.
  • No organization-specific asset inventory, compensating-control status, or patch deployment evidence supplied.
  • No exploit packet captures, log samples, or incident case IDs supplied.