CVE-2023-4419

Severity CVSS v4.0:
Pending analysis
Type:
CWE-798 Use of Hard-coded Credentials
Publication date:
24/08/2023
Last modified:
31/08/2023

Description

The LMS5xx uses hard-coded credentials, which potentially allow low-skilled<br /> unauthorized remote attackers to reconfigure settings and /or disrupt the functionality of the device.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:sick:lms531_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:sick:lms531:-:*:*:*:*:*:*:*
cpe:2.3:o:sick:lms511_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:sick:lms511:-:*:*:*:*:*:*:*
cpe:2.3:o:sick:lms500_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:sick:lms500:-:*:*:*:*:*:*:*