CVE-2020-2075

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/08/2020
Last modified:
04/09/2020

Description

Platform mechanism AutoIP allows remote attackers to reboot the device via a crafted packet in SICK AG solutions Bulkscan LMS111, Bulkscan LMS511, CLV62x – CLV65x, ICR890-3, LMS10x, LMS11x, LMS15x, LMS12x, LMS13x, LMS14x, LMS5xx, LMS53x, MSC800, RFH.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:sick:lms111_firmware:*:*:*:*:*:*:*:* 1.04 (excluding)
cpe:2.3:h:sick:lms111:-:*:*:*:*:*:*:*
cpe:2.3:o:sick:lms511_firmware:*:*:*:*:*:*:*:* 2.30 (excluding)
cpe:2.3:h:sick:lms511:-:*:*:*:*:*:*:*
cpe:2.3:o:sick:clv620_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:sick:clv620:-:*:*:*:*:*:*:*
cpe:2.3:o:sick:clv622_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:sick:clv622:-:*:*:*:*:*:*:*
cpe:2.3:o:sick:clv621_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:sick:clv621:-:*:*:*:*:*:*:*
cpe:2.3:o:sick:icr890-3_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:sick:icr890-3:-:*:*:*:*:*:*:*
cpe:2.3:o:sick:msc800_firmware:*:*:*:*:*:*:*:* 4.10 (excluding)
cpe:2.3:h:sick:msc800:-:*:*:*:*:*:*:*
cpe:2.3:o:sick:rfh_firmware:*:*:*:*:*:*:*:*