← Back to home
ICSA-22-172-03  ·  Published 2022-06-21  ·  View on CISA ICS-CERT ↗

Phoenix Contact Classic Line Controllers

CVSS 9.8 CRITICAL

Risk Summary

Successful exploitation of this vulnerability could allow an attacker to upload logic with arbitrary code.

CVEs (1)

Remediations

  • Phoenix Contact classic line industrial controllers are developed and designed for the use in closed industrial networks using a defense-in-depth approach focusing on network segmentation and communication robustness. In such an approach, users are protected against attacks, (especially from the outside) by a multi-level perimeter, including firewalls as well as dividing the plant into OT zones by using firewalls. This concept is supported by organizational measures in the production plant as part of a security management system. To accomplish security here measures are required at all levels. Ensure that the logic is always transferred or stored in protected environments. This is valid for data in transmission as well as data in rest.
  • Connections between the engineering tools and the controller must always be in a locally protected environment or protected by VPN for remote access.
  • Project data should not send as a file via email or other transfer mechanisms without additional integrity and authenticity checks.
  • Project data should be saved in protected environments only.
  • Customers using Phoenix Contact classic line controllers are recommended to operate the devices in closed networks or protected with a suitable firewall as intended.
  • Measures to protect devices based on classic control technology

Affected Vendors

Phoenix Contact

Affected Products (17)

Phoenix Contact · AXC 1050 2700988
Phoenix Contact · AXC 1050 XC 2701295
Phoenix Contact · AXC 3050 2700989
Phoenix Contact · FC 350 PCI ETH 2730844
Phoenix Contact · ILC 1x0 vers:all/*
Phoenix Contact · ILC 1x1 vers:all/*
Phoenix Contact · ILC 1x1 GSM/GPRS 2700977
Phoenix Contact · ILC 3xx vers:all/*
Phoenix Contact · PC WORX RT BASIC 2700291
Phoenix Contact · PC WORX SRT 2701680
Phoenix Contact · RFC 430 ETH-IB 2730190
Phoenix Contact · RFC 450 ETH-IB 2730200
Phoenix Contact · RFC 460R PN 3TX 2700784
Phoenix Contact · RFC 460R PN 3TX-S 1096407
Phoenix Contact · RFC 470 PN 3TX 2916600
Phoenix Contact · RFC 470S PN 3TX 2916794
Phoenix Contact · RFC 480S PN 4TX 2404577

Affected Sectors

Multiple Sectors

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more