VYPR

Tloc100 100 Firmware

by SICK AG

CVEs (5)

  • CVE-2025-59461HigOct 27, 2025
    risk 0.49cvss 7.6epss 0.00

    A remote unauthenticated attacker may use the unauthenticated C++ API to access or modify sensitive data and disrupt services.

  • CVE-2025-59460HigOct 27, 2025
    risk 0.49cvss 7.5epss 0.00

    The system is deployed in its default state, with configuration settings that do not comply with the latest best practices for restricting access. This increases the risk of unauthorised connections.

  • CVE-2025-59462MedOct 27, 2025
    risk 0.42cvss 6.5epss 0.01

    An attacker who tampers with the C++ CLI client may crash the UpdateService during file transfers, disrupting updates and availability.

  • CVE-2025-59459MedOct 27, 2025
    risk 0.36cvss 5.5epss 0.00

    An attacker that gains SSH access to an unprivileged account may be able to disrupt services (including SSH), causing persistent loss of availability.

  • CVE-2025-59463MedOct 27, 2025
    risk 0.28cvss 4.3epss 0.00

    An attacker may cause chunk-size mismatches that block file transfers and prevent subsequent transfers.