CVE-2023-23444
Missing Authentication for Critical Function in SICK Flexi Classic and Flexi Soft Gateways with Partnumbers 1042193, 1042964, 1044078, 1044072, 1044073, 1044074, 1099830, 1099832, 1127717, 1069070, 1112296, 1051432, 1102420, 1127487, 1121596, 1121597 allows an unauthenticated remote attacker to influence the availability of the device by changing the IP settings of the device via broadcasted UDP packets.
Published:May 12, 2023
Last Modified:Jan 24, 2025
EPS:May 12, 2023
EPSS Score:0.00567
CVSS Score:7.5
Affected Products
Vendor
Product
Action
Vendor
Sick
Product
Fx0-gent00000
Sick
Fx0-gent00000
Vendor
Sick
Product
Fx0-gent00000 Firmware
Sick
Fx0-gent00000 Firmware
Vendor
Sick
Product
Fx0-gent00010
Sick
Fx0-gent00010
Vendor
Sick
Product
Fx0-gent00010 Firmware
Sick
Fx0-gent00010 Firmware
Vendor
Sick
Product
Fx0-gent00030
Sick
Fx0-gent00030
Vendor
Sick
Product
Fx0-gent00030 Firmware
Sick
Fx0-gent00030 Firmware
Vendor
Sick
Product
Fx0-gmod00000
Sick
Fx0-gmod00000
Vendor
Sick
Product
Fx0-gmod00000 Firmware
Sick
Fx0-gmod00000 Firmware
Vendor
Sick
Product
Fx0-gmod00010
Sick
Fx0-gmod00010
Vendor
Sick
Product
Fx0-gmod00010 Firmware
Sick
Fx0-gmod00010 Firmware
Vendor
Sick
Product
Fx0-gpnt00000
Sick
Fx0-gpnt00000
Vendor
Sick
Product
Fx0-gpnt00000 Firmware
Sick
Fx0-gpnt00000 Firmware
Vendor
Sick
Product
Fx0-gpnt00010
Sick
Fx0-gpnt00010
Vendor
Sick
Product
Fx0-gpnt00010 Firmware
Sick
Fx0-gpnt00010 Firmware
Vendor
Sick
Product
Fx0-gpnt00030
Sick
Fx0-gpnt00030
Vendor
Sick
Product
Fx0-gpnt00030 Firmware
Sick
Fx0-gpnt00030 Firmware
Vendor
Sick
Product
Ue410-en1
Sick
Ue410-en1
Vendor
Sick
Product
Ue410-en1 Firmware
Sick
Ue410-en1 Firmware
Vendor
Sick
Product
Ue410-en3
Sick
Ue410-en3
Vendor
Sick
Product
Ue410-en3 Firmware
Sick
Ue410-en3 Firmware
Vendor
Sick
Product
Ue410-en4
Sick
Ue410-en4
Vendor
Sick
Product
Ue410-en4 Firmware
Sick
Ue410-en4 Firmware
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
