Uncontrolled Resource Consumption in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged
remote attacker to influence the availability of the webserver by invocing several open file requests via
the REST interface.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Sick
Subscribe
|
Ftmg-esd15axx
Subscribe
Ftmg-esd15axx Firmware
Subscribe
Ftmg-esd20axx
Subscribe
Ftmg-esd20axx Firmware
Subscribe
Ftmg-esd25axx
Subscribe
Ftmg-esd25axx Firmware
Subscribe
Ftmg-esn40sxx
Subscribe
Ftmg-esn40sxx Firmware
Subscribe
Ftmg-esn50sxx
Subscribe
Ftmg-esn50sxx Firmware
Subscribe
Ftmg-esr40sxx
Subscribe
Ftmg-esr40sxx Firmware
Subscribe
Ftmg-esr50sxx
Subscribe
Ftmg-esr50sxx Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-27547 | Uncontrolled Resource Consumption in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged remote attacker to influence the availability of the webserver by invocing several open file requests via the REST interface. |
Fixes
Solution
SICK has released a new major version v3.0.0.131.Release of the SICK FTMg firmware and recommends updating to the newest version.
Workaround
No workaround given by the vendor.
References
History
Thu, 23 Jan 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: SICK AG
Published:
Updated: 2025-01-23T19:15:53.962Z
Reserved: 2023-01-12T04:07:53.938Z
Link: CVE-2023-23447
Updated: 2024-08-02T10:28:40.882Z
Status : Modified
Published: 2023-05-15T11:15:09.217
Modified: 2024-11-21T07:46:12.987
Link: CVE-2023-23447
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD