A remote unauthorized attacker may connect to the SIM1012, interact with the device and
change configuration settings. The adversary may also reset the SIM and in the worst case upload a
new firmware version to the device.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-57612 A remote unauthorized attacker may connect to the SIM1012, interact with the device and change configuration settings. The adversary may also reset the SIM and in the worst case upload a new firmware version to the device.
Fixes

Solution

SICK recommends to disable port 2111 & 2122 once the SIM1012 is put into operation. The information how to disable the port can be retrieved from the SIM1012 API documentation. SICK recommends using the SICK AppManager in version >=1.5.6 for the commissioning of the SIM1012.


Workaround

No workaround given by the vendor.

History

Mon, 09 Dec 2024 14:15:00 +0000

Type Values Removed Values Added
First Time appeared Sick sim1012
CPEs cpe:2.3:a:sick_ag:sim1012:*:*:*:*:*:*:*:* cpe:2.3:h:sick:sim1012:-:*:*:*:*:*:*:*
Vendors & Products Sick Ag
Sick Ag sim1012
Sick sim1012

Mon, 23 Sep 2024 18:30:00 +0000

Type Values Removed Values Added
First Time appeared Sick Ag
Sick Ag sim1012
CPEs cpe:2.3:a:sick_ag:sim1012:*:*:*:*:*:*:*:*
Vendors & Products Sick Ag
Sick Ag sim1012
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: SICK AG

Published:

Updated: 2024-12-09T14:08:49.408Z

Reserved: 2023-09-29T10:17:33.150Z

Link: CVE-2023-5288

cve-icon Vulnrichment

Updated: 2024-08-02T07:52:08.562Z

cve-icon NVD

Status : Modified

Published: 2023-09-29T12:15:13.437

Modified: 2024-11-21T08:41:27.523

Link: CVE-2023-5288

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.