CVE-2022-29898
On various RAD-ISM-900-EN-* devices by PHOENIX CONTACT an admin user could use the configuration file uploader in the WebUI to execute arbitrary code with root privileges on the OS due to an improper validation of an integrity check value in all versions of the firmware.
Scoring
- Severity
- CRITICAL
- CVSS base score
- 9.1
- CVSS vector
- CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
- EPSS probability
- 0.54%
- CWE
- CWE-354
- Published
- 2022-05-11
- Last modified
- 2026-03-13
Affected products
- PHOENIX CONTACT RAD-ISM-900-EN-BD/B
- PHOENIX CONTACT RAD-ISM-900-EN-BD
- PHOENIX CONTACT RAD-ISM-900-EN-BD-BUS
Weakness type
Related vulnerabilities
- CVE-2025-11543 — Improper Validation of Integrity Check Value vulnerability in Sharp Display Solutions projectors allows a attacker may c
- CVE-2026-33026 — nginx-ui Backup Restore Allows Tampering with Encrypted Backups
- CVE-2025-7096 — Comodo Internet Security Premium Manifest File cis_update_x64.xml integrity check
- CVE-2025-54887 — jwe: Missing AES-GCM authentication tag validation in encrypted JWEs
- CVE-2022-25946 — On all versions of 16.1.x, 15.1.x, 14.1.x, 13.1.x, 12.1.x, and 11.6.x of F5 BIG-IP Advanced WAF, ASM, and ASM, and F5 BI
- CVE-2026-26928 — Lack of Dynamic Library Validation in SzafirHost
- CVE-2024-48930 — secp256k1-node vulnerable to private key extraction over ECDH
- CVE-2024-47089 — Unauthorized Transaction Manipulation Vulnerability