๐Ÿ” CVE Alert

CVE-2025-41770

HIGH 7.5

Unauthenticated Denial of Service

CVSS Score
7.5
EPSS Score
0.0%
EPSS Percentile
0th

An unauthenticated denial-of-service vulnerability in the device's PLCnext Engineer communication interface allow an remote attacker to interrupt access via the client application. Successful exploitation prevents communication until the PLCnext service is manually restarted.

CWE CWE-770
Vendor phoenix contact
Product axc f 1152
Published Aug 12, 2026
Stay Ahead of the Next One

Get instant alerts for phoenix contact axc f 1152

Be the first to know when new high vulnerabilities affecting phoenix contact axc f 1152 are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High

Affected Versions

Phoenix Contact / AXC F 1152
2019.0.4 < 2026.0.3
Phoenix Contact / AXC F 1252
2019.0.4 < 2026.0.3
Phoenix Contact / AXC F 2000 EA
2019.0.4 < 2026.0.3
Phoenix Contact / AXC F 2152
2019.0.4 < 2026.0.3
Phoenix Contact / AXC F 3152
2019.0.4 < 2026.0.3
Phoenix Contact / BPC 9102S
2019.0.4 < 2026.0.3
Phoenix Contact / BPC 9202S
2019.0.4 < 2026.0.3
Phoenix Contact / RFC 4072R
2019.0.4 < 2026.0.3
Phoenix Contact / RFC 4072S
2019.0.4 < 2026.0.3
Phoenix Contact / VL3 UPC 2440 EDGE
2019.0.4 < 2026.0.3
Phoenix Contact / VPLCNEXT CONTROL 1000
2019.0.4 < 2026.0.3
Phoenix Contact / VPLCNEXT CONTROL 2000
2019.0.4 < 2026.0.3
Phoenix Contact / VPLCNEXT CONTROL 3000
2019.0.4 < 2026.0.3
Phoenix Contact / VPLCNEXT CONTROL 500
2019.0.4 < 2026.0.3
Phoenix Contact / Catan C1
2019.0.4 < 2026.0.3
Phoenix Contact / EPC 1502
2019.0.4 < 2026.0.3
Phoenix Contact / EPC 1522
2019.0.4 < 2026.0.3

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
phoenixcontact.csaf-tp.certvde.com: https://phoenixcontact.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2025-056.json

Credits

CyberDanube