漏洞描述 Phoenix Contact Automationworx Suite 包含 PC Worx 以及 PC Worx Express 中存在栈缓冲区溢出漏洞。此漏洞是由于未充分验证用户输入的PLCOpen XML文件数据所导致的。
相关漏洞推荐 POC wp-contact-form-7-fpd: WordPress Contact Form 7 - Full Path Disclosure POC wp-contact-form-fpd: WordPress Contact Form - Full Path Disclosure POC unauth-phoenix-dashboard: Unauth Phoenix Dashboard - Detect (CVE-2025-4665) Contact Form CFDB7 SQL注入与不安全反序列化漏洞 (CVE-2015-10137)WordPress Contact Form With File Upload插件任意文件上传漏洞 用友NC ContactsQueryServiceServlet 反序列化漏洞 用友NC ContactsFuzzySearchServlet 反序列化漏洞 POC CVE-2010-1723: Joomla! Component iNetLanka Contact Us Draw Root Map 1.1 - Local File Inclusion POC CVE-2017-1000163: Phoenix Framework - Open Redirect POC CVE-2017-18490: Contact Form Multi by BestWebSoft < 1.2.1 - Cross-Site Scripting POC CVE-2017-18491: Contact Form by BestWebSoft < 4.0.6 - Cross-Site Scripting POC CVE-2017-18492: Contact Form to DB by BestWebSoft < 1.5.7 - Cross-Site Scripting POC CVE-2020-12800: WordPress Contact Form 7 <1.3.3.3 - Remote Code Execution