CVE-2023-23447

Uncontrolled Resource Consumption in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged
remote attacker to influence the availability of the webserver by invocing several open file requests via
the REST interface.

ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
SICK AGCNA
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 54%
VendorProductVersion
sickftmg-esd20axx_firmware
𝑥
< 2.0
sickftmg-esd25axx_firmware
𝑥
< 2.0
sickftmg-esn40sxx_firmware
𝑥
< 2.0
sickftmg-esn50sxx_firmware
𝑥
< 2.0
sickftmg-esr50sxx_firmware
𝑥
< 2.0
sickftmg-esr40sxx_firmware
𝑥
< 2.0
sickftmg-esd15axx_firmware
𝑥
< 2.0
𝑥
= Vulnerable software versions