First published: Mon Aug 31 2020(Updated: )
Platform mechanism AutoIP allows remote attackers to reboot the device via a crafted packet in SICK AG solutions Bulkscan LMS111, Bulkscan LMS511, CLV62x – CLV65x, ICR890-3, LMS10x, LMS11x, LMS15x, LMS12x, LMS13x, LMS14x, LMS5xx, LMS53x, MSC800, RFH.
Credit: psirt@sick.de
Affected Software | Affected Version | How to fix |
---|---|---|
Sick Lms111 Firmware | <1.04 | |
Sick Lms111 | ||
Sick Lms511 Firmware | <2.30 | |
Sick Lms511 | ||
Sick Clv620 Firmware | ||
Sick Clv620 | ||
Sick Clv622 Firmware | ||
Sick Clv622 | ||
Sick Clv621 Firmware | ||
Sick Clv621 | ||
Sick Icr890-3 Firmware | ||
Sick Icr890-3 | ||
Sick Msc800 Firmware | <4.10 | |
SICK MSC800 | ||
Sick Rfh Firmware | ||
Sick Rfh | ||
Sick Clv650 Firmware | ||
Sick Clv650 | ||
Sick Clv651 Firmware | ||
Sick Clv651 | ||
Sick Clv631 Firmware | ||
Sick Clv631 | ||
Sick Clv630 Firmware | ||
Sick Clv630 | ||
Sick Clv632 Firmware | ||
Sick Clv632 | ||
Sick Clv640 Firmware | ||
Sick Clv640 | ||
Sick Clv642 Firmware | ||
Sick Clv642 | ||
Sick Lms100 Firmware | <2.0 | |
Sick Lms100 | ||
Sick Lms101 Firmware | <2.0 | |
Sick Lms101 | ||
Sick Lms111 Firmware | <2.0 | |
Sick Lms153 Firmware | <2.0 | |
Sick Lms153 | ||
Sick Lms151 Firmware | <2.0 | |
Sick Lms151 | ||
Sick Lms133 Firmware | <2.10 | |
Sick Lms133 | ||
Sick Lms142 Firmware | <2.10 | |
Sick Lms142 | ||
Sick Lms143 Firmware | <2.10 | |
Sick Lms143 | ||
Sick Lms131 Firmware | <2.10 | |
Sick Lms131 | ||
Sick Lms121 Firmware | <2.10 | |
Sick Lms121 | ||
Sick Lms123 Firmware | <2.10 | |
Sick Lms123 | ||
Sick Lms122 Firmware | <2.10 | |
Sick Lms122 | ||
Sick Lms141 Firmware | <2.10 | |
Sick Lms141 | ||
Sick Lms511 Firmware | ||
Sick Lms531 Firmware | ||
Sick Lms531 | ||
Sick Lms500 Firmware | ||
Sick Lms500 | ||
Sick Icr890-3.5 Firmware | ||
Sick Icr890-3.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-2075 is a vulnerability in the platform mechanism AutoIP that allows remote attackers to reboot the device via a crafted packet in SICK AG solutions Bulkscan LMS111, Bulkscan LMS511, CLV62x – CLV65x, ICR890-3, LMS10x, LMS11x, LMS15x, LMS12x, LMS13x, LMS14x, LMS5xx, LMS53x, MSC800, RFH.
CVE-2020-2075 has a severity rating of 7.5, which is considered high.
CVE-2020-2075 affects SICK AG solutions Bulkscan LMS111, Bulkscan LMS511, CLV62x – CLV65x, ICR890-3, LMS10x, LMS11x, LMS15x, LMS12x, LMS13x, LMS14x, LMS5xx, LMS53x, MSC800, and RFH.
To fix CVE-2020-2075, it is recommended to apply the latest firmware update provided by SICK AG.
More information about CVE-2020-2075 can be found on the SICK AG Product Security Incident Response Team (PSIRT) advisory page: [link](https://www.sick.com/de/en/service-and-support/the-sick-product-security-incident-response-team-sick-psirt/w/psirt/#advisories)