CVE Vulnerabilities

CVE-2023-3271

Published: Jul 10, 2023 | Modified: Jul 19, 2023
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Improper Access Control in the SICK ICR890-4 could allow an unauthenticated remote attacker to gather information about the system and download data via the REST API by accessing unauthenticated endpoints.

Affected Software

Name Vendor Start Version End Version
Icr890-4_firmware Sick * 2.5.0 (excluding)

References