Vulnerability Description
Authentication Bypass by Capture-replay in SICK Flexi Soft Gateways with Partnumbers 1044073, 1127717, 1130282, 1044074, 1121597, 1099832, 1051432, 1127487, 1069070, 1112296, 1044072, 1121596, 1099830 allows an unauthenticated remote attacker to potentially impact the availability, integrity and confidentiality of the gateways via an authentication bypass by capture-replay.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sick | Fx0-Gent00000 Firmware | - |
| Sick | Fx0-Gent00000 | - |
| Sick | Fx0-Gent00010 Firmware | - |
| Sick | Fx0-Gent00010 | - |
| Sick | Fx0-Gent00030 Firmware | - |
| Sick | Fx0-Gent00030 | - |
| Sick | Fx0-Get00000 Firmware | - |
| Sick | Fx0-Get00000 | - |
| Sick | Fx0-Get00010 Firmware | - |
| Sick | Fx0-Get00010 | - |
| Sick | Fx0-Gmod00000 Firmware | - |
| Sick | Fx0-Gmod00000 | - |
| Sick | Fx0-Gmod00010 Firmware | - |
| Sick | Fx0-Gmod00010 | - |
| Sick | Fx0-Gmod00030 Firmware | - |
| Sick | Fx0-Gmod00030 | - |
| Sick | Fx0-Gpnt00000 Firmware | - |
| Sick | Fx0-Gpnt00000 | - |
| Sick | Fx0-Gpnt00010 Firmware | - |
| Sick | Fx0-Gpnt00010 | - |
Related Weaknesses (CWE)
References
- https://sick.com/.well-known/csaf/white/2023/sca-2023-0011.jsonVendor Advisory
- https://sick.com/.well-known/csaf/white/2023/sca-2023-0011.pdfMitigationVendor Advisory
- https://sick.com/psirtVendor Advisory
- https://sick.com/.well-known/csaf/white/2023/sca-2023-0011.jsonVendor Advisory
- https://sick.com/.well-known/csaf/white/2023/sca-2023-0011.pdfMitigationVendor Advisory
- https://sick.com/psirtVendor Advisory
FAQ
What is CVE-2023-5246?
CVE-2023-5246 is a vulnerability with a CVSS score of 8.8 (HIGH). Authentication Bypass by Capture-replay in SICK Flexi Soft Gateways with Partnumbers 1044073, 1127717, 1130282, 1044074, 1121597, 1099832, 1051432, 1127487, 1069070, 1112296, 1044072, 1121596, 1099830...
How severe is CVE-2023-5246?
CVE-2023-5246 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-5246?
Check the references section above for vendor advisories and patch information. Affected products include: Sick Fx0-Gent00000 Firmware, Sick Fx0-Gent00000, Sick Fx0-Gent00010 Firmware, Sick Fx0-Gent00010, Sick Fx0-Gent00030 Firmware.