CVE-2024-8751

high

Description

A vulnerability in the MSC800 allows an unauthenticated attacker to modify the product’s IP address over Sopas ET. This can lead to Denial of Service. Users are recommended to upgrade both MSC800 and MSC800 LFT to version V4.26 and S2.93.20 respectively which fixes this issue.

References

https://www.sick.com/.well-known/csaf/white/2024/

https://www.first.org/cvss/calculator/3.1

https://www.cisa.gov/resources-tools/resources/ics-recommended-practices

https://sick.com/psirt

https://cdn.sick.com/media/docs/1/11/411/Special_information_CYBERSECURITY_BY_SICK_en_IM0084411.PDF

Details

Source: Mitre, NVD

Published: 2024-09-12

Updated: 2024-09-13

Risk Information

CVSS v2

Base Score: 7.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:C

Severity: High

CVSS v3

Base Score: 7.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Severity: High