VYPR

sick

by SICK AG

CVEs (5)

  • CVE-2024-8751HigSep 12, 2024
    risk 0.49cvss 7.5epss 0.01

    A vulnerability allows a remote unauthenticated attacker to modify the prod uct’s IP address over the Sopas ET interface. This can lead to a Denial of Service attack.

  • CVE-2026-22644MedJan 15, 2026
    risk 0.34cvss 5.3epss 0.00

    Certain requests pass the authentication token in the URL as string query parameter, making it vulnerable to theft through server logs, proxy logs and Referer headers, which could allow an attacker to hijack the user's session and gain unauthorized access.

  • CVE-2026-22918MedJan 15, 2026
    risk 0.28cvss 4.3epss 0.00

    An attacker may exploit missing protection against clickjacking by tricking users into performing unintended actions through maliciously crafted web pages, leading to the extraction of sensitive data.

  • CVE-2026-22915MedJan 15, 2026
    risk 0.28cvss 4.3epss 0.00

    An attacker with low privileges may be able to read files from specific directories on the device, potentially exposing sensitive information.

  • CVE-2026-22913MedJan 15, 2026
    risk 0.28cvss 4.3epss 0.00

    Improper handling of a URL parameter may allow attackers to execute code in a user's browser after login. This can lead to the extraction of sensitive data.