CVE Feed

    Dashboard / CVE / CVE-2017-16723

    CVE-2017-16723

    A Cross-site Scripting issue was discovered in PHOENIX CONTACT FL COMSERVER BASIC 232/422/485, FL COMSERVER UNI 232/422/485, FL COMSERVER BAS 232/422/485-T, FL COMSERVER UNI 232/422/485-T, FL COM SERVER RS232, FL COM SERVER RS485, and PSI-MODEM/ETH (running firmware versions prior to 1.99, 2.20, or 2.40). The cross-site scripting vulnerability has been identified, which may allow remote code execution.

    Published:Dec 11, 2017
    Last Modified:Apr 20, 2025
    EPS:Dec 11, 2017
    EPSS Score:0.00418
    CVSS Score:6.1

    Affected Products

    Vendor
    Phoenixcontact
    Product
    Fl Com Server Rs232
    Vendor
    Phoenixcontact
    Product
    Fl Com Server Rs232 Firmware
    Vendor
    Phoenixcontact
    Product
    Fl Com Server Rs485
    Vendor
    Phoenixcontact
    Product
    Fl Com Server Rs485 Firmware
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Bas 232
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Bas 232 Firmware
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Bas 422
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Bas 422 Firmware
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Bas 485-t
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Bas 485-t Firmware
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Basic 232
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Basic 232 Firmware
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Basic 422
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Basic 422 Firmware
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Basic 485
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Basic 485 Firmware
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Uni 232
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Uni 232 Firmware
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Uni 422
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Uni 422 Firmware
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Uni 485
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Uni 485-t
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Uni 485-t Firmware
    Vendor
    Phoenixcontact
    Product
    Fl Comserver Uni 485 Firmware
    Vendor
    Phoenixcontact
    Product
    Psi-modem\/eth
    Vendor
    Phoenixcontact
    Product
    Psi-modem\/eth Firmware

    Exploits

    No exploit reference

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High