CVE-2017-7935

HIGH

Phoenix Contact GmbH mGuard firmware 8.3.0-8.4.2 - Resource Exhaustion via VPN Requests

Title source: llm
STIX 2.1

Description

A Resource Exhaustion issue was discovered in Phoenix Contact GmbH mGuard firmware versions 8.3.0 to 8.4.2. An attacker may compromise the device's availability by performing multiple initial VPN requests.

References (1)

Core 1
Core References
Third Party Advisory, US Government Resource x_refsource_misc
https://ics-cert.us-cert.gov/advisories/ICSA-17-131-01

Scores

CVSS v3 7.5
EPSS 0.0118
EPSS Percentile 63.9%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-400
Status published
Products (7)
n/a/Phoenix Contact GmbH mGuard Phoenix Contact GmbH mGuard
phoenix_contact_gmbh/mguard_firmware 8.3.0
phoenix_contact_gmbh/mguard_firmware 8.3.1
phoenix_contact_gmbh/mguard_firmware 8.3.2
phoenix_contact_gmbh/mguard_firmware 8.4.0
phoenix_contact_gmbh/mguard_firmware 8.4.1
phoenix_contact_gmbh/mguard_firmware 8.4.2
Published May 19, 2017
Tracked Since Feb 18, 2026