First published: Mon Oct 09 2023(Updated: )
Insufficient Control Flow Management in RDT400 in SICK APU allows an unprivileged remote attacker to potentially enable hidden functionality via HTTP requests.
Credit: psirt@sick.de psirt@sick.de
Affected Software | Affected Version | How to fix |
---|---|---|
Sick Apu0200 Firmware | <4.0.0.6 | |
Sick Apu0200 | ||
All of | ||
Sick Apu0200 Firmware | <4.0.0.6 | |
Sick Apu0200 |
The recommended solution is to update the image to a version >= 4.0.0.6 as soon as possible.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this issue is CVE-2023-5102.
The severity of CVE-2023-5102 is medium (5.3).
The affected software is SICK APU0200 Firmware version up to 4.0.0.6.
An unprivileged remote attacker can potentially enable hidden functionality through HTTP requests.
You can find more information about CVE-2023-5102 on the following links: [Link1](https://sick.com/.well-known/csaf/white/2023/sca-2023-0010.json), [Link2](https://sick.com/.well-known/csaf/white/2023/sca-2023-0010.pdf), [Link3](https://sick.com/psirt).