Back to Database
Status published
High
CVE-2021-33540
Phoenix Contact: Undocumented FTP acces in certain AXL F BK and IL BK devices
Vulnerability Description
In certain devices of the Phoenix Contact AXL F BK and IL BK product families an undocumented password protected FTP access to the root directory exists.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-33540
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- This vulnerability was discovered by Secuvera. PHOENIX CONTACT thanks CERT@VDE for the coordination and support with this publication.
More from Phoenix Contact
View All →CVE-2025-41752
Reflected XSS vulnerability in pxc_portSfp.php
High
7.1
CVE-2025-41751
Reflected XSS vulnerability in pxc_portCntr.php
High
7.1
CVE-2025-41750
Reflected XSS vulnerability in pxc_PortCfg.php
High
7.1
CVE-2025-41749
Reflected XSS vulnerability in port_util.php
High
7.1
CVE-2025-41748
Reflected XSS vulnerability in pxc_Dot1xCfg.php
High
7.1
Affected Vendor
Phoenix Contact
View all reports →Affected Software
AXL F BK, IL
Vulnerable Versions:
AXL F PN TPS XC (1068857), AXL F EIP EF (2702782), AXL F PN TPS (2403869), AXL F EIP (2688394), AXL F ETH (2688459), AXL F ETH XC (2701949), AXL F S3 (2701686), AXL F PN (2701815) all revisions, AXL F PN XC (2701222) all revisions, AXL F ETH NET2 (2702177) all revisions, AXL F SAS (2701457) all revisions, IL PN BK-PAC (2403696) all revisions, IL PN BK DI8 DO4 2TX-PAC (2703994) all revisions, IL PN BK DI8 DO4 2SCRJ-PAC (2878379) all revisions, IL ETH BK DI8 DO4 2TX-XC-PAC (2701388) all revisions, IL ETH BK DI8 DO4 2TX-PAC (2703981) all revisions, IL EIP BK DI8 DO4 2TX-PAC (2897758) all revisions, IL S3 BK DI8 DO4 2TX-PAC (2692380) all revisions
Timeline
Official Publish:
June 25th, 2021
Last Modified:
September 17th, 2024
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L