Back to Database
Status published
High
CVE-2023-3634
Festo: MSE6-C2M/D2M/E2M Incomplete User Documentation of Remote Accessible Functions
Vulnerability Description
In products of the MSE6 product-family by Festo a remote authenticated, low privileged attacker could use functions of undocumented test mode which could lead to a complete loss of confidentiality, integrity and availability.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-3634
Credits & Attribution
No credits recorded in the NVD database.
References
More from Festo
View All →CVE-2022-30311
FESTO: CECC-X-M1 and Servo Press Kit YJKP OS Command Injection vulnerability
Critical
9.8
CVE-2022-30310
FESTO: CECC-X-M1 and Servo Press Kit YJKP OS Command Injection vulnerability
Critical
9.8
CVE-2022-30309
FESTO: CECC-X-M1 and Servo Press Kit YJKP OS Command Injection vulnerability
Critical
9.8
CVE-2022-30308
FESTO: CECC-X-M1 and Servo Press Kit YJKP OS Command Injection vulnerability
Critical
9.8
CVE-2014-0769
Festo CECX-X-(C1/M1) Controller Improper Authentication
Critical
9.3
Affected Vendor
Festo
View all reports →Affected Software
MSE6-C2M-5000-FB36-D-M-RG-BAR-M12L4-AGD, MSE6-C2M-5000-FB36-D-M-RG-BAR-M12L5-AGD, MSE6-C2M-5000-FB43-D-M-RG-BAR-M12L4-MQ1-AGD, MSE6-C2M-5000-FB43-D-M-RG-BAR-M12L5-MQ1-AGD, MSE6-C2M-5000-FB44-D-M-RG-BAR-AMI-AGD, MSE6-C2M-5000-FB44-D-RG-BAR-AMI-AGD, MSE6-D2M-5000-CBUS-S-RG-BAR-VCB-AGD, MSE6-E2M-5000-FB13-AGD, MSE6-E2M-5000-FB36-AGD, MSE6-E2M-5000-FB37-AGD, MSE6-E2M-5000-FB43-AGD, MSE6-E2M-5000-FB44-AGD
Vulnerable Versions:
*
Timeline
Official Publish:
April 16th, 2026
Last Modified:
April 16th, 2026
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weaknesses (CWE)
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.