Not a U.S. government website. NDD is an independent vulnerability database by Volerion and is not affiliated with or endorsed by NIST or NVD.
CVE-2023-3569 Details
Description
In PHOENIX CONTACTs TC ROUTER and TC CLOUD CLIENT in versions prior to 2.07.2 as well as CLOUD CLIENT 1101T-TX/TX prior to 2.06.10 an authenticated remote attacker with admin privileges could upload a crafted XML file which causes a denial-of-service.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Feb 26, 2025Exploitation: NoneAutomatable: NoTechnical Impact: Partial
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-776 | Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion') | [email protected] |
| CWE-776 | Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion') | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| phoenixcontact cloud client 1101t-tx firmware | < 2.06.10 |
CPE
Remediation
| |
| phoenixcontact cloud client 1101t-tx | All versions |
CPE
Remediation
| |
| phoenixcontact tc cloud client 1002-4g att firmware | < 2.07.2 |
CPE
Remediation
| |
| phoenixcontact tc cloud client 1002-4g att | All versions |
CPE
Remediation
| |
| phoenixcontact tc cloud client 1002-4g firmware | < 2.07.2 |
CPE
Remediation
| |
| phoenixcontact tc cloud client 1002-4g | All versions |
CPE
Remediation
| |
| phoenixcontact tc cloud client 1002-4g vzw firmware | < 2.07.2 |
CPE
Remediation
| |
| phoenixcontact tc cloud client 1002-4g vzw | All versions |
CPE
Remediation
| |
| phoenixcontact tc router 3002t-4g att firmware | < 2.07.2 |
CPE
Remediation
| |
| phoenixcontact tc router 3002t-4g att | All versions |
CPE
Remediation
| |
| phoenixcontact tc router 3002t-4g firmware | < 2.07.2 |
CPE
Remediation
| |
| phoenixcontact tc router 3002t-4g | All versions |
CPE
Remediation
| |
| phoenixcontact tc router 3002t-4g vzw firmware | < 2.07.2 |
CPE
Remediation
| |
| phoenixcontact tc router 3002t-4g vzw | All versions |
CPE
Remediation
| |
Change History
7 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Nov 21, 2024 | CVE Modified | CVE |
| May 14, 2024 | CVE Modified | [email protected] |
| Aug 14, 2023 | CVE Modified | [email protected] |
| Aug 11, 2023 | CVE Modified | [email protected] |
| Aug 10, 2023 | Initial Analysis | [email protected] |