The vendor explicitly identifies these products as affected by this CVE.
- SICK FTMg with Firmware <2.8
- Summary
- It is possible to crash the embedded FTMg web server by suppling too many characters to the endpoint parameters. This fills up the buffer which results in a crash of the web server. The sensor still measures, even if the webserver crashed. To access the endpoint parameters, maintenance level privileges are needed.
- Remediation
- SICK has released a new version of the SICK FTMg firmware and recommends updating to the newest version.
