CVE-2025-41697
Published Dec 9, 2025An attacker can use an undocumented UART port on the PCB as a side-channel to get root access e.g. with the credentials obtained from CVE-2025-41692.
Vendor/product archive
3 CVEs tagged to phoenixcontact / fl_switch_2508 — 0 Critical, 0 High, 3 Medium, 0 Low, 0 Unrated.
An attacker can use an undocumented UART port on the PCB as a side-channel to get root access e.g. with the credentials obtained from CVE-2025-41692.
An attacker can use an undocumented UART port on the PCB as a side-channel with the user hardcoded credentials obtained from CVE-2025-41692 to gain read access to parts of the fil…
A low privileged remote attacker can use the ssh feature to execute commands directly after login. The process stays open and uses resources which leads to a reduced performance o…