CVE-2023-23451: Critical severity sick ue410-en3 firmware vulnerability
The Flexi Classic and Flexi Soft Gateways SICK UE410-EN3 FLEXI ETHERNET GATEW. with serial number <=2311xxxx all Firmware versions, SICK UE410-EN1 FLEXI ETHERNET GATEW. with serial number <=2311xxxx all Firmware versions, SICK UE410-EN3S04 FLEXI ETHERNET GATEW. with serial number <=2311xxxx all Firmware versions, SICK UE410-EN4 FLEXI ETHERNET GATEW. with serial number <=2311xxxx all Firmware versions, SICK FX0-GENT00000 FLEXISOFT EIP GATEW. with serial number <=2311xxxx with Firmware <=V2.11.0, SICK FX0-GMOD00000 FLEXISOFT MOD GATEW. with serial number <=2311xxxx with Firmware <=V2.11.0, SICK FX0-GPNT00000 FLEXISOFT PNET GATEW. with serial number <=2311xxxx with Firmware <=V2.12.0, SICK FX0-GENT00030 FLEXISOFT EIP GATEW.V2 with serial number <=2311xxxx all Firmware versions, SICK FX0-GPNT00030 FLEXISOFT PNET GATEW.V2 with serial number <=2311xxxx all Firmware versions and SICK FX0-GMOD00010 FLEXISOFT MOD GW with serial number <=2311xxxx with Firmware <=V2.11.0 all have Telnet enabled by factory default. No password is set in the default configuration.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2023-23451.
What is the severity of CVE-2023-23451?
The severity of CVE-2023-23451 is critical.
Which software versions are affected by CVE-2023-23451?
All firmware versions of SICK UE410-EN3 FLEXI ETHERNET GATEW. with serial number <=2311xxxx, SICK UE410-EN1 FLEXI ETHERNET GATEW. with serial number <=2311xxxx, and SICK UE410-EN3S04 FLEXI ETHERNET GATEW. with serial number <=2311xxxx are affected.
How can I fix CVE-2023-23451?
To fix CVE-2023-23451, it is recommended to apply the latest firmware update provided by SICK and follow any additional instructions or recommendations from the vendor.
Where can I find more information about CVE-2023-23451?
You can find more information about CVE-2023-23451 on the SICK product security website at https://sick.com/psirt.