CVE-2018-25112
PHOENIX CONTACT: ILC 1x1 ETH Denial of Service
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.5EPSS 0.4%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Lifecycle
04 Jun 2025Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
An unauthenticated remote attacker may use an uncontrolled resource consumption in the IEC 61131 program of the affected products by creating large amounts of network traffic that needs to be handled by the ILC. This results in a Denial-of-Service of the device.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected products
PHOENIX CONTACT · ILC 131PHOENIX CONTACT · ILC 151PHOENIX CONTACT · ILC 171PHOENIX CONTACT · ILC 191 ETHWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →