Lucene search

K
nvd[email protected]NVD:CVE-2023-23444
HistoryMay 12, 2023 - 1:15 p.m.

CVE-2023-23444

2023-05-1213:15:09
CWE-306
web.nvd.nist.gov
3
cve-2023-23444
remote attacker
ip settings
udp packets

CVSS3

8.2

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H

AI Score

7.8

Confidence

High

EPSS

0.002

Percentile

58.9%

Missing Authentication for Critical Function in SICK Flexi Classic and Flexi Soft Gateways with Partnumbers 1042193, 1042964, 1044078, 1044072, 1044073, 1044074, 1099830, 1099832, 1127717, 1069070, 1112296, 1051432, 1102420, 1127487, 1121596, 1121597 allows an unauthenticated remote attacker to influence the availability of the device by changing the IP settings of the device via broadcasted UDP packets.

Affected configurations

Nvd
Node
sickue410-en4_firmwareMatch-
AND
sickue410-en4Match-
Node
sickue410-en3_firmwareMatch-
AND
sickue410-en3Match-
Node
sickue410-en1_firmwareMatch-
AND
sickue410-en1Match-
Node
sickfx0-gpnt00030Match-
AND
sickfx0-gpnt00030_firmwareMatch-
Node
sickfx0-gpnt00010Match-
AND
sickfx0-gpnt00010_firmwareMatch-
Node
sickfx0-gpnt00000Match-
AND
sickfx0-gpnt00000_firmwareMatch-
Node
sickfx0-gmod00010Match-
AND
sickfx0-gmod00010_firmwareMatch-
Node
sickfx0-gmod00000Match-
AND
sickfx0-gmod00000_firmwareMatch-
Node
sickfx0-gent00030Match-
AND
sickfx0-gent00030_firmwareMatch-
Node
sickfx0-gent00010Match-
AND
sickfx0-gent00010_firmwareMatch-
Node
sickfx0-gent00000Match-
AND
sickfx0-gent00000_firmwareMatch-
VendorProductVersionCPE
sickue410-en4_firmware-cpe:2.3:o:sick:ue410-en4_firmware:-:*:*:*:*:*:*:*
sickue410-en4-cpe:2.3:h:sick:ue410-en4:-:*:*:*:*:*:*:*
sickue410-en3_firmware-cpe:2.3:o:sick:ue410-en3_firmware:-:*:*:*:*:*:*:*
sickue410-en3-cpe:2.3:h:sick:ue410-en3:-:*:*:*:*:*:*:*
sickue410-en1_firmware-cpe:2.3:o:sick:ue410-en1_firmware:-:*:*:*:*:*:*:*
sickue410-en1-cpe:2.3:h:sick:ue410-en1:-:*:*:*:*:*:*:*
sickfx0-gpnt00030-cpe:2.3:h:sick:fx0-gpnt00030:-:*:*:*:*:*:*:*
sickfx0-gpnt00030_firmware-cpe:2.3:o:sick:fx0-gpnt00030_firmware:-:*:*:*:*:*:*:*
sickfx0-gpnt00010-cpe:2.3:h:sick:fx0-gpnt00010:-:*:*:*:*:*:*:*
sickfx0-gpnt00010_firmware-cpe:2.3:o:sick:fx0-gpnt00010_firmware:-:*:*:*:*:*:*:*
Rows per page:
1-10 of 221

CVSS3

8.2

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H

AI Score

7.8

Confidence

High

EPSS

0.002

Percentile

58.9%

Related for NVD:CVE-2023-23444