In Phoenix Contact FL SWITCH Series 2xxx in version 3.00 an incorrect privilege assignment allows an low privileged user to enable full access to the device configuration.
Conclusion & alert: CVE-2022-22509 is rated Moderate Risk (51.4/100): CVSS High severity, with low exploitation likelihood (EPSS 0.27%). Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2025-03-30 | 0.74% | 0.27% | -0.47% |
| 2 | 2025-03-29 | 0.27% | 0.74% | +0.47% |
| 3 | 2025-03-17 | — | 0.27% | — |
Full EPSS history (5 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 8.8 | 3.1 | HIGH |
|
2.8 | 5.9 | [email protected] |
| 8.8 | 3.1 | HIGH |
|
2.8 | 5.9 | [email protected] |
| 9.0 | 2.0 | HIGH |
|
8.0 | 10.0 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| phoenixcontact | fl_switch_2005_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2005_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2008_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2008_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2008f_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2008f_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2016_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2016_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2105_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2105_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2108_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2108_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2116_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2116_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2204-2tc-2sfx_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2204-2tc-2sfx_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2206-2fx_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2206-2fx_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2206-2fx_sm_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2206-2fx_sm_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2206-2fx_sm_st_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2206-2fx_sm_st_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2206-2fx_st_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2206-2fx_st_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2206-2sfx_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2206-2sfx_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2206-2sfx_pn_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2206-2sfx_pn_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2206c-2fx_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2206c-2fx_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2207-fx_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2207-fx_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2207-fx_sm_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2207-fx_sm_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2208_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2208_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2208c_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2208c_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2208_pn_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2208_pn_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2212-2tc-2sfx_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2212-2tc-2sfx_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2214-2fx_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2214-2fx_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2214-2fx_sm_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2214-2fx_sm_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2214-2sfx_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2214-2sfx_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2214-2sfx_pn_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2214-2sfx_pn_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2216_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2216_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2216_pn_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2216_pn_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2304-2gc-2sfp_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2304-2gc-2sfp_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2306-2sfp_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2306-2sfp_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2306-2sfp_pn_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2306-2sfp_pn_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2308_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2308_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2308_pn_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2308_pn_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2312-2gc-2sfp_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2312-2gc-2sfp_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2314-2sfp_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2314-2sfp_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2314-2sfp_pn_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2314-2sfp_pn_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2316_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2316_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2316\/k1_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2316\/k1_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2316_pn_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2316_pn_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2404-2tc-2sfx_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2404-2tc-2sfx_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2406-2sfx_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2406-2sfx_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2406-2sfx_pn_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2406-2sfx_pn_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2408_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2408_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2408_pn_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2408_pn_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2412-2tc-2sfx_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2412-2tc-2sfx_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2414-2sfx_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2414-2sfx_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2414-2sfx_pn_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2414-2sfx_pn_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2416_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2416_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2416_pn_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2416_pn_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2504-2gc-2sfp_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2504-2gc-2sfp_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2506-2sfp_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2506-2sfp_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2506-2sfp\/k1_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2506-2sfp\/k1_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2506-2sfp_pn_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2506-2sfp_pn_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2508_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2508_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2508\/k1_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2508\/k1_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2508_pn_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2508_pn_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2512-2gc-2sfp_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2512-2gc-2sfp_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2514-2sfp_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2514-2sfp_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2514-2sfp_pn_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2514-2sfp_pn_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2516_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2516_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2516_pn_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2516_pn_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2608_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2608_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2608_pn_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2608_pn_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2708_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2708_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2708_pn_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2708_pn_firmware:3.00:*:*:*:*:*:*:* |
| phoenixcontact | fl_switch_2205_firmware | 3.00 | cpe:2.3:o:phoenixcontact:fl_switch_2205_firmware:3.00:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://cert.vde.com/en/advisories/VDE-2022-001/ | Mitigation Third Party Advisory |