CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

Search Vulnerabilities

 Software

Searching vulnerabilities affecting “sick”

127 vulnerabilities found for “sick”

Page 1 of 7

CVE-2023-5246
HIGH8.8

Authentication Bypass by Capture-replay in SICK Flexi Soft Gateways with Partnumbers 1044073, 1127717, 1130282, 1044074, 1121597, 1099832, 1051432, 1127487, 1069070, 1112296, 1044072, 1121596, 1099830 allows an unauthenticated remote attacker to potentially impact the availability, integrity and confidentiality of the gateways via an authentication bypass by capture-replay.

sick / fx0-gent00000_firmware+12
Network
Published Oct 23, 2023
Page 1 of 7
CVE-2023-43699
HIGH7.5

Improper Restriction of Excessive Authentication Attempts in RDT400 in SICK APU allows an unprivileged remote attacker to guess the password via trial-and-error as the login attempts are not limited.

sick / apu0200_firmware
Network
Published Oct 9, 2023
CVE-2023-43700
HIGH7.7

Missing Authorization in RDT400 in SICK APU allows an unprivileged remote attacker to modify data via HTTP requests that no not require authentication.

sick / apu0200_firmware
Network
Published Oct 9, 2023
CVE-2023-43696
HIGH8.2

Improper Access Control in SICK APU allows an unprivileged remote attacker to download as well as upload arbitrary files via anonymous access to the FTP server.

sick / apu0200_firmware
Network
Published Oct 9, 2023
CVE-2023-3272
HIGH7.5

Cleartext Transmission of Sensitive Information in the SICK ICR890-4 could allow a remote attacker to gather sensitive information by intercepting network traffic that is not encrypted.

sick / icr890-4_firmware
Network
Published Jul 10, 2023
CVE-2023-3270
HIGH8.6

Exposure of Sensitive Information to an Unauthorized Actor in the SICK ICR890-4 could allow an unauthenticated remote attacker to retrieve sensitive information about the system.

sick / icr890-4_firmware
Network
Published Jul 10, 2023
CVE-2023-3271
HIGH8.2

Improper Access Control in the SICK ICR890-4 could allow an unauthenticated remote attacker to gather information about the system and download data via the REST API by accessing unauthenticated endpoints.

sick / icr890-4_firmware
Network
Published Jul 10, 2023
CVE-2023-35696
HIGH7.5

Unauthenticated endpoints in the SICK ICR890-4 could allow an unauthenticated remote attacker to retrieve sensitive information about the device via HTTP requests.

sick / icr890-4_firmware
Network
Published Jul 10, 2023
CVE-2023-35698
MEDIUM5.3

Observable Response Discrepancy in the SICK ICR890-4 could allow a remote attacker to identify valid usernames for the FTP server from the response given during a failed login attempt.

sick / icr890-4_firmware
Network
Published Jul 10, 2023
CVE-2023-35697
MEDIUM5.3

Improper Restriction of Excessive Authentication Attempts in the SICK ICR890-4 could allow a remote attacker to brute-force user credentials.

sick / icr890-4_firmware
Network
Published Jul 10, 2023
CVE-2023-35699
MEDIUM5.3

Cleartext Storage on Disk in the SICK ICR890-4 could allow an unauthenticated attacker with local access to the device to disclose sensitive information by accessing a SD card.

sick / icr890-4_firmware
Physical
Published Jul 10, 2023
CVE-2023-3273
HIGH7.5

Improper Access Control in the SICK ICR890-4 could allow an unauthenticated remote attacker to affect the availability of the device by changing settings of the device such as the IP address based on missing access control.

sick / icr890-4_firmware
Network
Published Jul 10, 2023
CVE-2023-23445
HIGH7.5

Improper Access Control in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged remote attacker to gain unauthorized access to data fields by using a therefore unpriviledged account via the REST interface.

sick / ftmg-esd20axx_firmware+6
Network
Published May 15, 2023
CVE-2023-31409
MEDIUM5.3

Uncontrolled Resource Consumption in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an remote attacker to influence the availability of the webserver by invocing a Slowloris style attack via HTTP requests.

sick / ftmg-esd20axx_firmware+6
Network
Published May 15, 2023
CVE-2023-23447
HIGH7.5

Uncontrolled Resource Consumption in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged remote attacker to influence the availability of the webserver by invocing several open file requests via the REST interface.

sick / ftmg-esd20axx_firmware+6
Network
Published May 15, 2023
CVE-2023-31408
MEDIUM5.3

Cleartext Storage of Sensitive Information in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows a remote attacker to potentially steal user credentials that are stored in the user’s browsers local storage via cross-site-scripting attacks.

sick / ftmg-esd20axx_firmware+6
Network
Published May 15, 2023
CVE-2023-23450
MEDIUM6.2

Use of Password Hash Instead of Password for Authentication in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged remote attacker to use a password hash instead of an actual password to login to a valid user account via the REST interface.

sick / ftmg-esd20axx_firmware+6
Local
Published May 15, 2023
CVE-2023-23449
MEDIUM5.3

Observable Response Discrepancy in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows a remote attacker to gain information about valid usernames by analyzing challenge responses from the server via the REST interface.

sick / ftmg-esd20axx_firmware+6
Network
Published May 15, 2023
CVE-2023-23446
HIGH7.5

Improper Access Control in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged remote attacker to download files by using a therefore unpriviledged account via the REST interface.

sick / ftmg-esd20axx_firmware+6
Network
Published May 15, 2023
CVE-2023-23448
MEDIUM5.3

Inclusion of Sensitive Information in Source Code in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows a remote attacker to gain information about valid usernames via analysis of source code.

sick / ftmg-esd20axx_firmware+6
Network
Published May 15, 2023