A low privileged remote attacker can run the webshell with an empty command containing whitespace. The server will then block until it receives more data, resulting in a DoS condition of the websserver.
History

Wed, 10 Dec 2025 18:00:00 +0000

Type Values Removed Values Added
First Time appeared Phoenixcontact
Phoenixcontact fl Nat 2208
Phoenixcontact fl Nat 2304-2gc-2sfp
Phoenixcontact fl Switch 2005
Phoenixcontact fl Switch 2008
Phoenixcontact fl Switch 2008f
Phoenixcontact fl Switch 2016
Phoenixcontact fl Switch 2105
Phoenixcontact fl Switch 2108
Phoenixcontact fl Switch 2116
Phoenixcontact fl Switch 2204-2tc-2sfx
Phoenixcontact fl Switch 2205
Phoenixcontact fl Switch 2206-2fx
Phoenixcontact fl Switch 2206-2fx Sm
Phoenixcontact fl Switch 2206-2fx Sm St
Phoenixcontact fl Switch 2206-2fx St
Phoenixcontact fl Switch 2206-2sfx
Phoenixcontact fl Switch 2206-2sfx Pn
Phoenixcontact fl Switch 2206c-2fx
Phoenixcontact fl Switch 2207-fx
Phoenixcontact fl Switch 2207-fx Sm
Phoenixcontact fl Switch 2208
Phoenixcontact fl Switch 2208 Pn
Phoenixcontact fl Switch 2208c
Phoenixcontact fl Switch 2212-2tc-2sfx
Phoenixcontact fl Switch 2214-2fx
Phoenixcontact fl Switch 2214-2fx Sm
Phoenixcontact fl Switch 2214-2sfx
Phoenixcontact fl Switch 2214-2sfx Pn
Phoenixcontact fl Switch 2216
Phoenixcontact fl Switch 2216 Pn
Phoenixcontact fl Switch 2304-2gc-2sfp
Phoenixcontact fl Switch 2306-2sfp
Phoenixcontact fl Switch 2306-2sfp Pn
Phoenixcontact fl Switch 2308
Phoenixcontact fl Switch 2308 Pn
Phoenixcontact fl Switch 2312-2gc-2sfp
Phoenixcontact fl Switch 2314-2sfp
Phoenixcontact fl Switch 2314-2sfp Pn
Phoenixcontact fl Switch 2316
Phoenixcontact fl Switch 2316/k1
Phoenixcontact fl Switch 2316 Pn
Phoenixcontact fl Switch 2404-2tc-2sfx
Phoenixcontact fl Switch 2406-2sfx
Phoenixcontact fl Switch 2406-2sfx Pn
Phoenixcontact fl Switch 2408
Phoenixcontact fl Switch 2408 Pn
Phoenixcontact fl Switch 2412-2tc-2sfx
Phoenixcontact fl Switch 2414-2sfx
Phoenixcontact fl Switch 2414-2sfx Pn
Phoenixcontact fl Switch 2416
Phoenixcontact fl Switch 2416 Pn
Phoenixcontact fl Switch 2504-2gc-2sfp
Phoenixcontact fl Switch 2506-2sfp
Phoenixcontact fl Switch 2506-2sfp/k1
Phoenixcontact fl Switch 2506-2sfp Pn
Phoenixcontact fl Switch 2508
Phoenixcontact fl Switch 2508/k1
Phoenixcontact fl Switch 2508 Pn
Phoenixcontact fl Switch 2512-2gc-2sfp
Phoenixcontact fl Switch 2514-2sfp
Phoenixcontact fl Switch 2514-2sfp Pn
Phoenixcontact fl Switch 2516
Phoenixcontact fl Switch 2516 Pn
Phoenixcontact fl Switch 2608
Phoenixcontact fl Switch 2608 Pn
Phoenixcontact fl Switch 2708
Phoenixcontact fl Switch 2708 Pn
Vendors & Products Phoenixcontact
Phoenixcontact fl Nat 2208
Phoenixcontact fl Nat 2304-2gc-2sfp
Phoenixcontact fl Switch 2005
Phoenixcontact fl Switch 2008
Phoenixcontact fl Switch 2008f
Phoenixcontact fl Switch 2016
Phoenixcontact fl Switch 2105
Phoenixcontact fl Switch 2108
Phoenixcontact fl Switch 2116
Phoenixcontact fl Switch 2204-2tc-2sfx
Phoenixcontact fl Switch 2205
Phoenixcontact fl Switch 2206-2fx
Phoenixcontact fl Switch 2206-2fx Sm
Phoenixcontact fl Switch 2206-2fx Sm St
Phoenixcontact fl Switch 2206-2fx St
Phoenixcontact fl Switch 2206-2sfx
Phoenixcontact fl Switch 2206-2sfx Pn
Phoenixcontact fl Switch 2206c-2fx
Phoenixcontact fl Switch 2207-fx
Phoenixcontact fl Switch 2207-fx Sm
Phoenixcontact fl Switch 2208
Phoenixcontact fl Switch 2208 Pn
Phoenixcontact fl Switch 2208c
Phoenixcontact fl Switch 2212-2tc-2sfx
Phoenixcontact fl Switch 2214-2fx
Phoenixcontact fl Switch 2214-2fx Sm
Phoenixcontact fl Switch 2214-2sfx
Phoenixcontact fl Switch 2214-2sfx Pn
Phoenixcontact fl Switch 2216
Phoenixcontact fl Switch 2216 Pn
Phoenixcontact fl Switch 2304-2gc-2sfp
Phoenixcontact fl Switch 2306-2sfp
Phoenixcontact fl Switch 2306-2sfp Pn
Phoenixcontact fl Switch 2308
Phoenixcontact fl Switch 2308 Pn
Phoenixcontact fl Switch 2312-2gc-2sfp
Phoenixcontact fl Switch 2314-2sfp
Phoenixcontact fl Switch 2314-2sfp Pn
Phoenixcontact fl Switch 2316
Phoenixcontact fl Switch 2316/k1
Phoenixcontact fl Switch 2316 Pn
Phoenixcontact fl Switch 2404-2tc-2sfx
Phoenixcontact fl Switch 2406-2sfx
Phoenixcontact fl Switch 2406-2sfx Pn
Phoenixcontact fl Switch 2408
Phoenixcontact fl Switch 2408 Pn
Phoenixcontact fl Switch 2412-2tc-2sfx
Phoenixcontact fl Switch 2414-2sfx
Phoenixcontact fl Switch 2414-2sfx Pn
Phoenixcontact fl Switch 2416
Phoenixcontact fl Switch 2416 Pn
Phoenixcontact fl Switch 2504-2gc-2sfp
Phoenixcontact fl Switch 2506-2sfp
Phoenixcontact fl Switch 2506-2sfp/k1
Phoenixcontact fl Switch 2506-2sfp Pn
Phoenixcontact fl Switch 2508
Phoenixcontact fl Switch 2508/k1
Phoenixcontact fl Switch 2508 Pn
Phoenixcontact fl Switch 2512-2gc-2sfp
Phoenixcontact fl Switch 2514-2sfp
Phoenixcontact fl Switch 2514-2sfp Pn
Phoenixcontact fl Switch 2516
Phoenixcontact fl Switch 2516 Pn
Phoenixcontact fl Switch 2608
Phoenixcontact fl Switch 2608 Pn
Phoenixcontact fl Switch 2708
Phoenixcontact fl Switch 2708 Pn

Tue, 09 Dec 2025 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 09 Dec 2025 08:15:00 +0000

Type Values Removed Values Added
Description A low privileged remote attacker can run the webshell with an empty command containing whitespace. The server will then block until it receives more data, resulting in a DoS condition of the websserver.
Title Authenticated Denial-of-Service via Webshell
Weaknesses CWE-770
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: CERTVDE

Published: 2025-12-09T08:12:59.166Z

Updated: 2025-12-09T14:33:23.571Z

Reserved: 2025-04-16T11:17:48.309Z

Link: CVE-2025-41694

cve-icon Vulnrichment

Updated: 2025-12-09T14:33:20.412Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-12-09T16:17:48.583

Modified: 2025-12-09T18:36:53.557

Link: CVE-2025-41694

cve-icon Redhat

No data.