CVE-2018-13992
HIGHCVSS 8.2/10EPSS 1.11%
Last modified
CVE-2018-13992 is a high-severity vulnerability rated 8.2/10 on the CVSS scale. The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx versions 1.0 to 1.34 allows for plaintext transmission (HTTP) of user credentials by default.. EPSS estimates a 1.11% chance of exploitation in the next 30 days.
Description
The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx versions 1.0 to 1.34 allows for plaintext transmission (HTTP) of user credentials by default.
Metrics
CVSS:3.0/AC:L/AV:N/A:N/C:H/I:L/PR:N/S:U/UI:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Phoenixcontact | Fl Switch 3005 Firmware | > 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 3005t Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 3004t-Fx Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 3004t-Fx St Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 3008 Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 3008t Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 3006t-2fx Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 3006t-2fx St Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 3012e-2sfx Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 3016e Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 3016 Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 3016t Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 3006t-2fx Sm Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 4008t-2sfp Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 4008t-2gt-4fx Sm Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 4008t-2gt-3fx Sm Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 4808e-16fx Lc-4gc Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 4808e-16fx Sm-4gc Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 4808e-16fx Sm St-4gc Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 4808e-16fx St-4gc Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 4808e-16fx-4gc Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 4808e-16fx Sm Lc-4gc Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 4012t 2gt 2fx Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 4012t-2gt-2fx St Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 4824e-4gc Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 4800e-24fx-4gc Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 4800e-24fx Sm-4gc Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 3012e-2fx Sm Firmware | >= 1.0, <= 1.34 |
| Phoenixcontact | Fl Switch 4000t-8poe-2sfp-R Firmware | >= 1.0, <= 1.34 |
References
- http://www.securityfocus.com/bid/106737Third Party Advisory, VDB Entry
- https://ics-cert.us-cert.gov/advisories/ICSA-19-024-02Third Party Advisory, US Government Resource
- http://www.securityfocus.com/bid/106737Third Party Advisory, VDB Entry
- https://ics-cert.us-cert.gov/advisories/ICSA-19-024-02Third Party Advisory, US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-13992?
The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx versions 1.0 to 1.34 allows for plaintext transmission (HTTP) of user credentials by default.
How severe is CVE-2018-13992?
CVE-2018-13992 has a CVSS score of 8.2/10 (HIGH severity). The EPSS model estimates a 1.11% probability of exploitation in the next 30 days.
How do I fix CVE-2018-13992?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2018
- CVE-2018-13983ImpressCMS 1.3.10 has XSS via the PATH_INFO to htdocs/instal…
- CVE-2018-13988Poppler through 0.62 contains an out of bounds read vulnerab…
- CVE-2018-13989Grundig Smart Inter@ctive TV 3.0 devices allow CSRF attacks …
- CVE-2018-1399IBM Daeja ViewONE Professional, Standard & Virtual 4.1.5 and…
- CVE-2018-13990The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx vers…8.6
- CVE-2018-13991The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx vers…5.3
- CVE-2018-13993The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx vers…8.8
- CVE-2018-13994The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx vers…7.5
- CVE-2018-13996Genann through 2018-07-08 has a stack-based buffer over-read…
- CVE-2018-13997Genann through 2018-07-08 has a SEGV in genann_run in genann…
- CVE-2018-13998ClipperCMS 1.3.3 has stored XSS via the Full Name field of (…
- CVE-2018-13999Catfish CMS v4.7.9 allows XSS via the admin/Index/write.html…
Are you affected by CVE-2018-13992?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
