CVE-2023-4418
24.08.2023, 19:15
A remote unprivileged attacker can sent multiple packages to the LMS5xx to disrupt its availability through a TCP SYN-based denial-of-service (DDoS) attack. By exploiting this vulnerability, an attacker can flood the targeted LMS5xx with a high volume of TCP SYN requests, overwhelming its resources and causing it to become unresponsive or unavailable for legitimate users.Enginsight
Vendor | Product | Version |
---|---|---|
sick | lms531_firmware | * |
sick | lms511_firmware | * |
sick | lms500_firmware | * |
𝑥
= Vulnerable software versions
References