CVE-2023-31408: High severity SICK Ftmg-esd20axx Firmware vulnerability
Cleartext Storage of Sensitive Information in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows a remote attacker to potentially steal user credentials that are stored in the user’s browsers local storage via cross-site-scripting attacks.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-31408?
CVE-2023-31408 is a vulnerability that allows a remote attacker to potentially steal user credentials stored in the user's browser local storage via cross-site scripting attacks on SICK FTMg AIR FLOW SENSOR.
How severe is CVE-2023-31408?
CVE-2023-31408 has a severity rating of 7.5 (High).
Which software versions are affected by CVE-2023-31408?
CVE-2023-31408 affects SICK FTMg AIR FLOW SENSOR firmware versions up to but not including 2.0.
How can I fix CVE-2023-31408?
To fix CVE-2023-31408, it is recommended to update the SICK FTMg AIR FLOW SENSOR firmware to version 2.0 or later.
Where can I find more information about CVE-2023-31408?
You can find more information about CVE-2023-31408 on the official SICK website's PSIRT page and the provided references.