CVE-2023-23447

EUVD-2023-27547
Uncontrolled Resource Consumption in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged
remote attacker to influence the availability of the webserver by invocing several open file requests via
the REST interface.

ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
SICK AGCNA
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 60%
Affected Products (NVD)
VendorProductVersion
sickftmg-esd20axx_firmware
𝑥
< 2.0
sickftmg-esd25axx_firmware
𝑥
< 2.0
sickftmg-esn40sxx_firmware
𝑥
< 2.0
sickftmg-esn50sxx_firmware
𝑥
< 2.0
sickftmg-esr50sxx_firmware
𝑥
< 2.0
sickftmg-esr40sxx_firmware
𝑥
< 2.0
sickftmg-esd15axx_firmware
𝑥
< 2.0
𝑥
= Vulnerable software versions