CVE-2023-3270: High severity SICK Icr890-4 Firmware vulnerability
Published Jul 10, 2023
·Updated
Exposure of Sensitive Information to an Unauthorized Actor in the SICK ICR890-4 could allow an unauthenticated remote attacker to retrieve sensitive information about the system.
Affected Software
4 affected components
SICK Icr890-4 Firmware<2.5.0
SICK ICR890-4
All of the following
SICK Icr890-4 Firmware<2.5.0
SICK ICR890-4
Event History
Jul 10, 2023
CVE Published
via MITRE·09:18 AM
Data Sourced
via MITRE·09:18 AM
DescriptionSeverityWeakness
Data Sourced
04:15 PM
DescriptionSeverityWeaknessAffected Software
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-3270?
CVE-2023-3270 refers to the Exposure of Sensitive Information to an Unauthorized Actor vulnerability in the SICK ICR890-4 firmware.
2
How does CVE-2023-3270 affect the SICK ICR890-4 firmware?
CVE-2023-3270 allows an unauthenticated remote attacker to retrieve sensitive information from the system.
3
What is the severity level of CVE-2023-3270?
CVE-2023-3270 has a severity level of high (7 out of 10).
4
How can I fix the CVE-2023-3270 vulnerability in the SICK ICR890-4 firmware?
To fix the CVE-2023-3270 vulnerability, update the SICK ICR890-4 firmware to version 2.5.0 or higher.
5
Where can I find more information about CVE-2023-3270?
You can find more information about CVE-2023-3270 on the SICK PSIRT website or in the provided references.