CVE-2020-9435 Details
Description
PHOENIX CONTACT TC ROUTER 3002T-4G through 2.05.3, TC ROUTER 2002T-3G through 2.05.3, TC ROUTER 3002T-4G VZW through 2.05.3, TC ROUTER 3002T-4G ATT through 2.05.3, TC CLOUD CLIENT 1002-4G through 2.03.17, and TC CLOUD CLIENT 1002-TXTX through 1.03.17 devices contain a hardcoded certificate (and key) that is used by default for web-based services on the device. Impersonation, man-in-the-middle, or passive decryption attacks are possible if the generic certificate is not replaced by a device-specific certificate during installation.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| http://packetstormsecurity.com/files/156729/Phoenix-Contact-TC-Router-TC-Cloud-Client-Command-Injection.html | CVE | ExploitThird Party Advisory |
| https://cert.vde.com/en-us/advisories/ | CVE | Third Party Advisory |
| https://cert.vde.com/en-us/advisories/vde-2020-003 | CVE | Third Party Advisory |
| http://seclists.org/fulldisclosure/2020/Mar/15 | CVE | ExploitThird Party Advisory |
| http://packetstormsecurity.com/files/156729/Phoenix-Contact-TC-Router-TC-Cloud-Client-Command-Injection.html | [email protected] | ExploitThird Party Advisory |
| https://cert.vde.com/en-us/advisories/ | [email protected] | Third Party Advisory |
| https://cert.vde.com/en-us/advisories/vde-2020-003 | [email protected] | Third Party Advisory |
| http://seclists.org/fulldisclosure/2020/Mar/15 | [email protected] | ExploitThird Party Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-798 | Use of Hard-coded Credentials | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| phoenixcontact tc router 3002t-4g firmware | <= 2.05.3 |
CPE
Remediation
| |
| phoenixcontact tc router 3002t-4g | All versions |
CPE
Remediation
| |
| phoenixcontact tc router 2002t-3g firmware | <= 2.05.3 |
CPE
Remediation
| |
| phoenixcontact tc router 2002t-3g | All versions |
CPE
Remediation
| |
| phoenixcontact tc router 3002t-4g vzw firmware | <= 2.05.3 |
CPE
Remediation
| |
| phoenixcontact tc router 3002t-4g vzw | All versions |
CPE
Remediation
| |
| phoenixcontact tc router 3002t-4g att firmware | <= 2.05.3 |
CPE
Remediation
| |
| phoenixcontact tc router 3002t-4g att | All versions |
CPE
Remediation
| |
| phoenixcontact tc cloud client 1002-4g firmware | <= 2.03.17 |
CPE
Remediation
| |
| phoenixcontact tc cloud client 1002-4g | All versions |
CPE
Remediation
| |
| phoenixcontact tc cloud client 1002-txtx firmware | <= 1.03.17 |
CPE
Remediation
| |
| phoenixcontact tc cloud client 1002-txtx | All versions |
CPE
Remediation
| |
Change History
6 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Nov 21, 2024 | CVE Modified | CVE |
| May 14, 2024 | CVE Modified | [email protected] |
| Mar 16, 2020 | Initial Analysis | [email protected] |
| Mar 14, 2020 | CVE Modified | [email protected] |
| Mar 13, 2020 | CVE Modified | [email protected] |