A remote unprivileged attacker can sent multiple packages to the LMS5xx to disrupt its availability through a TCP SYN-based denial-of-service (DDoS) attack. 
By exploiting this vulnerability, an attacker can flood the targeted LMS5xx with a high volume of TCP SYN requests, overwhelming its resources and causing it to become unresponsive or unavailable for legitimate users.
                
            References
                    | Link | Resource | 
|---|---|
| https://sick.com/.well-known/csaf/white/2023/sca-2023-0007.json | Vendor Advisory | 
| https://sick.com/.well-known/csaf/white/2023/sca-2023-0007.pdf | Vendor Advisory | 
| https://sick.com/psirt | Vendor Advisory | 
| https://sick.com/.well-known/csaf/white/2023/sca-2023-0007.json | Vendor Advisory | 
| https://sick.com/.well-known/csaf/white/2023/sca-2023-0007.pdf | Vendor Advisory | 
| https://sick.com/psirt | Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| AND | 
 
 | 
Configuration 2 (hide)
| AND | 
 
 | 
Configuration 3 (hide)
| AND | 
 
 | 
History
                    21 Nov 2024, 08:35
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2023-08-24 19:15
Updated : 2024-11-21 08:35
NVD link : CVE-2023-4418
Mitre link : CVE-2023-4418
CVE.ORG link : CVE-2023-4418
JSON object : View
Products Affected
                sick
- lms531_firmware
- lms500
- lms531
- lms511
- lms500_firmware
- lms511_firmware
CWE
                
                    
                        
                        CWE-400
                        
            Uncontrolled Resource Consumption
