Modification of Assumed-Immutable Data (MAID) in RDT400 in SICK APU allows an
unprivileged remote attacker to make the site unable to load necessary strings via changing file paths
using HTTP requests.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-48078 Modification of Assumed-Immutable Data (MAID) in RDT400 in SICK APU allows an unprivileged remote attacker to make the site unable to load necessary strings via changing file paths using HTTP requests.
Fixes

Solution

The recommended solution is to update the image to a version >= 4.0.0.6 as soon as possible.


Workaround

No workaround given by the vendor.

History

Mon, 09 Dec 2024 23:15:00 +0900

Type Values Removed Values Added
CPEs cpe:2.3:a:sick_ag:apu0200:*:*:*:*:*:*:*:*
Vendors & Products Sick Ag
Sick Ag apu0200

Fri, 20 Sep 2024 00:30:00 +0900

Type Values Removed Values Added
First Time appeared Sick Ag
Sick Ag apu0200
CPEs cpe:2.3:a:sick_ag:apu0200:*:*:*:*:*:*:*:*
Vendors & Products Sick Ag
Sick Ag apu0200
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: SICK AG

Published:

Updated: 2024-12-09T13:54:12.933Z

Reserved: 2023-09-21T07:10:31.289Z

Link: CVE-2023-43697

cve-icon Vulnrichment

Updated: 2024-08-02T19:44:44.094Z

cve-icon NVD

Status : Modified

Published: 2023-10-09T13:15:10.323

Modified: 2024-11-21T08:24:35.567

Link: CVE-2023-43697

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses