Uncontrolled Resource Consumption in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an remote attacker to influence the availability of the webserver by invocing a Slowloris style attack via HTTP requests.
References
Link | Resource |
---|---|
https://sick.com/.well-known/csaf/white/2023/sca-2023-0004.json | Vendor Advisory |
https://sick.com/.well-known/csaf/white/2023/sca-2023-0004.pdf | Vendor Advisory |
https://sick.com/psirt | Vendor Advisory |
https://sick.com/.well-known/csaf/white/2023/sca-2023-0004.json | Vendor Advisory |
https://sick.com/.well-known/csaf/white/2023/sca-2023-0004.pdf | Vendor Advisory |
https://sick.com/psirt | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
History
21 Nov 2024, 08:01
Type | Values Removed | Values Added |
---|---|---|
References | () https://sick.com/.well-known/csaf/white/2023/sca-2023-0004.json - Vendor Advisory | |
References | () https://sick.com/.well-known/csaf/white/2023/sca-2023-0004.pdf - Vendor Advisory | |
References | () https://sick.com/psirt - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.3 |
Information
Published : 2023-05-15 11:15
Updated : 2024-11-21 08:01
NVD link : CVE-2023-31409
Mitre link : CVE-2023-31409
CVE.ORG link : CVE-2023-31409
JSON object : View
Products Affected
sick
- ftmg-esr40sxx_firmware
- ftmg-esn50sxx_firmware
- ftmg-esd20axx_firmware
- ftmg-esd15axx
- ftmg-esr50sxx_firmware
- ftmg-esn40sxx_firmware
- ftmg-esr50sxx
- ftmg-esd25axx
- ftmg-esd25axx_firmware
- ftmg-esr40sxx
- ftmg-esn50sxx
- ftmg-esd15axx_firmware
- ftmg-esd20axx
- ftmg-esn40sxx
CWE
CWE-400
Uncontrolled Resource Consumption