Security Advisory

CVE-2023-4418

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-08-24 18:05:15
Last updated 2024-12-09 14:12:17
Assigner SICK AG
State PUBLISHED

Description

A remote unprivileged attacker can sent multiple packages to the LMS5xx to disrupt its availability through a TCP SYN-based denial-of-service (DDoS) attack. By exploiting this vulnerability, an attacker can flood the targeted LMS5xx with a high volume of TCP SYN requests, overwhelming its resources and causing it to become unresponsive or unavailable for legitimate users.