Loading HuntDB...

GHSA-4m96-phjc-29rq

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated remote attacker can execute code with root permissions with a specially crafted HTTP POST when uploading a certificate to the device.

Related CVEs

Key Information

GHSA ID
GHSA-4m96-phjc-29rq
Published
August 9, 2023 9:30 AM
Last Modified
April 4, 2024 6:43 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 14, 2025 6:31 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.