Remote File Access Vulnerability in RDT400 by SICK
CVE-2023-5101
5.3MEDIUM
Summary
A vulnerability in the RDT400 product from SICK allows unprivileged remote attackers to gain access to sensitive files or directories. This exploit can occur through crafted HTTP requests, enabling unauthorized file downloads from the server. The issue poses a significant risk to data confidentiality, potentially exposing sensitive information to external parties. Ensuring the security of affected systems is crucial to protect against this type of attack.
Affected Version(s)
APU0200 all versions
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved