ICSA-22-172-03
·
Published 2022-06-21
·
View on CISA ICS-CERT ↗
Phoenix Contact Classic Line Controllers
CVSS 9.8
CRITICAL
Risk Summary
Successful exploitation of this vulnerability could allow an attacker to upload logic with arbitrary code.
CVEs (1)
Remediations
- Phoenix Contact classic line industrial controllers are developed and designed for the use in closed industrial networks using a defense-in-depth approach focusing on network segmentation and communication robustness. In such an approach, users are protected against attacks, (especially from the outside) by a multi-level perimeter, including firewalls as well as dividing the plant into OT zones by using firewalls. This concept is supported by organizational measures in the production plant as part of a security management system. To accomplish security here measures are required at all levels. Ensure that the logic is always transferred or stored in protected environments. This is valid for data in transmission as well as data in rest.
- Connections between the engineering tools and the controller must always be in a locally protected environment or protected by VPN for remote access.
- Project data should not send as a file via email or other transfer mechanisms without additional integrity and authenticity checks.
- Project data should be saved in protected environments only.
- Customers using Phoenix Contact classic line controllers are recommended to operate the devices in closed networks or protected with a suitable firewall as intended.
- Measures to protect devices based on classic control technology
Affected Vendors
Phoenix Contact
Affected Products (17)
Phoenix Contact
·
AXC 1050
2700988
Phoenix Contact
·
AXC 1050 XC
2701295
Phoenix Contact
·
AXC 3050
2700989
Phoenix Contact
·
FC 350 PCI ETH
2730844
Phoenix Contact
·
ILC 1x0
vers:all/*
Phoenix Contact
·
ILC 1x1
vers:all/*
Phoenix Contact
·
ILC 1x1 GSM/GPRS
2700977
Phoenix Contact
·
ILC 3xx
vers:all/*
Phoenix Contact
·
PC WORX RT BASIC
2700291
Phoenix Contact
·
PC WORX SRT
2701680
Phoenix Contact
·
RFC 430 ETH-IB
2730190
Phoenix Contact
·
RFC 450 ETH-IB
2730200
Phoenix Contact
·
RFC 460R PN 3TX
2700784
Phoenix Contact
·
RFC 460R PN 3TX-S
1096407
Phoenix Contact
·
RFC 470 PN 3TX
2916600
Phoenix Contact
·
RFC 470S PN 3TX
2916794
Phoenix Contact
·
RFC 480S PN 4TX
2404577
Affected Sectors
Multiple Sectors
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more