CVE-2020-10939| Phoenix Contact PC WORX SRTȨÏÞÌáÉý·ì϶¹«¸æ

°ä²¼¹¦·ò 2020-04-22

0x00 ·ì϶¸ÅÊö



CVE   ID

CVE-2020-10939

ʱ   ¼ä

2020-04-22

Àà    ÐÍ

EOP

µÈ   ¼¶

¸ßΣ

Ô¶³ÌÀûÓÃ

·ñ

Ó°ÏìÁìÓò

PHOENIX CONTACT PC WORX SRT <=1.14


0x01 ·ì϶ÏêÇé


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾



Phoenix Contact PC WORX SRTÊǵ¹ú·ÆÄá¿Ë˹µçÆø£¨Phoenix Contact£©¹«Ë¾µÄÒ»¿î¿É±à³ÌÂß¼­½ÚÔìÆ÷¡£

Phoenix Contact PC WORX SRT 1.14¼°Ö®Ç°°æ±¾ÖдæÔÚȨÏÞÌáÉý·ì϶£¬¸Ã·ì϶ԴÓÚ²»°²È«µÄĬÈÏõ辶ȨÏÞ¡£¹¥»÷Õß¿ÉÀûÓø÷ì϶ÌáÉýȨÏÞ¡£CVSSÆÀ·Ö7.8¡£

PC WORX SRTÊÇPhoenix ContactÀûÓÃÖеķþÎñ·¨Ê½¡£¸Ã·¨Ê½µÄ×°ÖÃõè¾¶ÅäÖôæÔÚ²»°²È«µÄȨÏÞ£¬¸ÃȨÏÞÔÊÐíÈκÎδÊÚȨÓû§½«ËÁÒâÎļþдÈë¸Ã·þÎñµÄËùÓÐÅäÖÃÎļþºÍ¶þ½øÔìÎļþµØµãµÄ×°ÖÃĿ¼¡£

¹¥»÷ÕßÄܹ»ÀûÓô˷ì϶ÓöñÒâ¶þ½øÔìÎļþ¸²¸ÇÖØÒªµÄ¡° PC WORX SRT¡±·þÎñ£¬µ¼ÖÂÒÔϵͳȨÏÞÔËÐжñÒâ´úÂë¡£


0x02 ´ëÖý¨Òé


Ŀǰ³§ÉÌÔÝδ°ä²¼½¨¸´´ëÊ©£¬½¨ÒéʹÓôËÈí¼þµÄÓû§ËæÊ±¹Ø×¢³§ÉÌÖ÷Ò³ÒÔ»ñÈ¡½â¾ö·¨×Ó£º

https://www.phoenixcontact.com/


0x03 ÓйØÐÂÎÅ


https://www.tenable.com/cve/CVE-2020-10939


0x04 ²Î¿¼Á´½Ó


https://cert.vde.com/en-us/advisories/vde-2020-012

https://nvd.nist.gov/vuln/detail/CVE-2020-10939

https://www.cnvd.org.cn/flaw/show/CNVD-2020-20687


0x05 ¹¦·òÏß


2020-03-27 CVE°ä²¼¸Ã·ì϶


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾