CVE detail
CVE-2019-10998 — CVE-2019-10998
Published 2019-06-18 · Modified 2026-06-17 · Vendor phoenixcontact · Product axc_f_2152_firmware · Source nvd
MEDIUM
severity
CVSS-derived band
0.0040
EPSS probability
exploitation probability, 30d
32.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
An issue was discovered on Phoenix Contact AXC F 2152 (No.2404267) before 2019.0 LTS and AXC F 2152 STARTERKIT (No.1046568) before 2019.0 LTS devices. Unlimited physical access to the PLC may lead to a manipulation of SD cards data. SD card manipulation may lead to an authentication bypass opportunity.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References