Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-9435

EPSS 0.38% · P59
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2020-9435

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
PHOENIX CONTACT TC ROUTER 3002T-4G through 2.05.3, TC ROUTER 2002T-3G through 2.05.3, TC ROUTER 3002T-4G VZW through 2.05.3, TC ROUTER 3002T-4G ATT through 2.05.3, TC CLOUD CLIENT 1002-4G through 2.03.17, and TC CLOUD CLIENT 1002-TXTX through 1.03.17 devices contain a hardcoded certificate (and key) that is used by default for web-based services on the device. Impersonation, man-in-the-middle, or passive decryption attacks are possible if the generic certificate is not replaced by a device-specific certificate during installation.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
多款Phoenix Contact产品信任管理问题漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Phoenix Contact TC ROUTER 3002T-4G等都是德国菲尼克斯电气(Phoenix Contact)公司的产品。Phoenix Contact TC ROUTER 3002T-4G是一款工业4G路由器。TC ROUTER 2002T-3G是一款工业3G路由器。TC ROUTER 3002T-4G VZW是一款工业4G路由器。 多款Phoenix Contact产品存在信任管理问题漏洞,该漏洞源于程序包含硬编码的证书和密钥。远程攻击者可利用该漏洞获取敏感信息(例如管理员凭证)。以下产
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2020-9435

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2020-9435

登录查看更多情报信息。

Same Patch Batch · n/a · 2020-03-12 · 141 CVEs total

CVE-2020-10436Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10419Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10420Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10421Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10422Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10423Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10424Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10425Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10426Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10427Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10428Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10429Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10430Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10431Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10432Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10433Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10434Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10435Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10446Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞
CVE-2020-10448Chadha Software Technologies PHPKB Standard Multi-Language 跨站脚本漏洞

Showing top 20 of 141 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2020-9435

No comments yet


Leave a comment