CVE-2023-23451: Sick FX0-GENT00000 Firmware

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

The Flexi Classic and Flexi Soft Gateways SICK UE410-EN3 FLEXI ETHERNET GATEW. with serial number <=2311xxxx all Firmware versions, SICK UE410-EN1 FLEXI ETHERNET GATEW. with serial number <=2311xxxx all Firmware versions, SICK UE410-EN3S04 FLEXI ETHERNET GATEW. with serial number <=2311xxxx all Firmware versions, SICK UE410-EN4 FLEXI ETHERNET GATEW. with serial number <=2311xxxx all Firmware versions, SICK FX0-GENT00000 FLEXISOFT EIP GATEW. with serial number <=2311xxxx with Firmware <=V2.11.0, SICK FX0-GMOD00000 FLEXISOFT MOD GATEW. with serial number <=2311xxxx with Firmware <=V2.11.0, SICK FX0-GPNT00000 FLEXISOFT PNET GATEW. with serial number <=2311xxxx with Firmware <=V2.12.0, SICK FX0-GENT00030 FLEXISOFT EIP GATEW.V2 with serial number <=2311xxxx all Firmware versions, SICK FX0-GPNT00030 FLEXISOFT PNET GATEW.V2 with serial number <=2311xxxx all Firmware versions and SICK FX0-GMOD00010 FLEXISOFT MOD GW with serial number <=2311xxxx with Firmware <=V2.11.0 all have Telnet enabled by factory default. No password is set in the default configuration.

Affected products

  • Sick FX0-GENT00000 Firmware: up to and including 2.11.0
  • Sick FX0-GENT00030 Firmware: any version
  • Sick FX0-GMOD00000 Firmware: up to and including 2.11.0
  • Sick FX0-GMOD00010 Firmware: up to and including 2.11.0
  • Sick FX0-GPNT00000 Firmware: up to and including 2.12.0
  • Sick FX0-GPNT00030 Firmware: any version
  • Sick UE410-EN1 Firmware: any version
  • Sick UE410-EN3 Firmware: any version
  • Sick UE410-EN3S04 Firmware: any version
  • Sick UE410-EN4 Firmware: any version

Published 2023-04-19. Last modified 2026-06-17.