Vendor
Unauthenticated Denial-of-Service Vulnerability in PLCnext Engineer
1 TTP 1 CVEAn unauthenticated remote denial-of-service vulnerability in the Phoenix Contact PLCnext Engineer communication interface allows attackers to crash the service, requiring manual intervention.
Privilege Escalation Vulnerability in Phoenix Contact CHARX Controllers
3 TTPs 1 CVEA local OS command injection vulnerability (CVE-2026-44095) in Phoenix Contact CHARX charging controllers allows low-privileged users to execute arbitrary commands as root.
Command Injection in Phoenix Contact CHARX SEC Controllers
2 TTPs 1 CVEAn unauthenticated remote command injection vulnerability in Phoenix Contact CHARX SEC controllers allows attackers to execute arbitrary code as root via malformed system configuration inputs.
Unauthenticated Remote Access to Phoenix Contact CHARX SEC MQTT Broker
2 rules 5 TTPs 12 CVEsA critical vulnerability (CVE-2026-44090) in Phoenix Contact CHARX SEC controllers allows unauthenticated remote attackers to gain full device control by bypassing authentication on the MQTT broker.
Phoenix Contact FL MGUARD Multiple Vulnerabilities
2 rules 3 TTPsA remote attacker can exploit multiple vulnerabilities in Phoenix Contact FL MGUARD to escalate privileges, disclose sensitive information, or cause a denial-of-service condition.