Vendor CVEs
SICK AG
All CVEs
155 total · sorted by risk| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-1710 | Hig | 0.49 | 7.5 | 0.01 | Jul 3, 2025 | The maxView Storage Manager does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame, making it susceptible to brute-force attacks. | ||
| CVE-2025-49194 | Hig | 0.49 | 7.5 | 0.00 | Jun 12, 2025 | The server supports authentication methods in which credentials are sent in plaintext over unencrypted channels. If an attacker were to intercept traffic between a client and this server, the credentials would be exposed. | ||
| CVE-2025-49184 | Hig | 0.49 | 7.5 | 0.00 | Jun 12, 2025 | A remote unauthorized attacker may gather sensitive information of the application, due to missing authorization of configuration settings of the product. | ||
| CVE-2025-49183 | Hig | 0.49 | 7.5 | 0.00 | Jun 12, 2025 | All communication with the REST API is unencrypted (HTTP), allowing an attacker to intercept traffic between an actor and the webserver. This leads to the possibility of information gathering and downloading media files. | ||
| CVE-2025-49182 | Hig | 0.49 | 7.5 | 0.00 | Jun 12, 2025 | Files in the source code contain login credentials for the admin user and the property configuration password, allowing an attacker to get full access to the application. | ||
| CVE-2025-32470 | Hig | 0.49 | 7.5 | 0.01 | Apr 28, 2025 | A remote unauthenticated attacker may be able to change the IP adress of the device, and therefore affecting the availability of the device. | ||
| CVE-2025-27594 | Hig | 0.49 | 7.5 | 0.00 | Mar 14, 2025 | The device uses an unencrypted, proprietary protocol for communication. Through this protocol, configuration data is transmitted and device authentication is performed. An attacker can thereby intercept the authentication hash and use it to log into the device using a… | ||
| CVE-2024-8751 | Hig | 0.49 | 7.5 | 0.01 | Sep 12, 2024 | A vulnerability allows a remote unauthenticated attacker to modify the prod uct’s IP address over the Sopas ET interface. This can lead to a Denial of Service attack. | ||
| CVE-2023-43699 | Hig | 0.49 | 7.5 | 0.01 | Oct 9, 2023 | Improper Restriction of Excessive Authentication Attempts in RDT400 in SICK APU allows an unprivileged remote attacker to guess the password via trial-and-error as the login attempts are not limited. | ||
| CVE-2023-4418 | Hig | 0.49 | 7.5 | 0.01 | Aug 24, 2023 | A remote unprivileged attacker can sent multiple packages to the LMS5xx to disrupt its availability through a TCP SYN-based denial-of-service (DDoS) attack. By exploiting this vulnerability, an attacker can flood the targeted LMS5xx with a high volume of TCP SYN requests,… | ||
| CVE-2023-31412 | Hig | 0.49 | 7.5 | 0.00 | Aug 24, 2023 | The LMS5xx uses weak hash generation methods, resulting in the creation of insecure hashs. If an attacker manages to retrieve the hash, it could lead to collision attacks and the potential retrieval of the password. | ||
| CVE-2023-3273 | Hig | 0.49 | 7.5 | 0.01 | Jul 10, 2023 | Improper Access Control in the SICK ICR890-4 could allow an unauthenticated remote attacker to affect the availability of the device by changing settings of the device such as the IP address based on missing access control. | ||
| CVE-2023-3272 | Hig | 0.49 | 7.5 | 0.01 | Jul 10, 2023 | Cleartext Transmission of Sensitive Information in the SICK ICR890-4 could allow a remote attacker to gather sensitive information by intercepting network traffic that is not encrypted. | ||
| CVE-2023-35696 | Hig | 0.49 | 7.5 | 0.01 | Jul 10, 2023 | Unauthenticated endpoints in the SICK ICR890-4 could allow an unauthenticated remote attacker to retrieve sensitive information about the device via HTTP requests. | ||
| CVE-2023-23447 | Hig | 0.49 | 7.5 | 0.01 | May 15, 2023 | Uncontrolled Resource Consumption in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged remote attacker to influence the availability of the webserver by invocing several open file requests via the REST… | ||
| CVE-2023-23446 | Hig | 0.49 | 7.5 | 0.01 | May 15, 2023 | Improper Access Control in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged remote attacker to download files by using a therefore unpriviledged account via the REST interface. | ||
| CVE-2023-23445 | Hig | 0.49 | 7.5 | 0.01 | May 15, 2023 | Improper Access Control in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged remote attacker to gain unauthorized access to data fields by using a therefore unpriviledged account via the REST interface. | ||
| CVE-2023-23444 | Hig | 0.49 | 7.5 | 0.01 | May 12, 2023 | Missing Authentication for Critical Function in SICK Flexi Classic and Flexi Soft Gateways with Partnumbers 1042193, 1042964, 1044078, 1044072, 1044073, 1044074, 1099830, 1099832, 1127717, 1069070, 1112296, 1051432, 1102420, 1127487, 1121596, 1121597 allows an unauthenticated… | ||
| CVE-2021-32499 | Hig | 0.49 | 7.5 | 0.01 | Dec 17, 2021 | SICK SOPAS ET before version 4.8.0 allows attackers to manipulate the command line arguments to pass in any value to the Emulator executable. | ||
| CVE-2020-2075 | Hig | 0.49 | 7.5 | 0.01 | Aug 31, 2020 | Platform mechanism AutoIP allows remote attackers to reboot the device via a crafted packet in SICK AG solutions Bulkscan LMS111, Bulkscan LMS511, CLV62x – CLV65x, ICR890-3, LMS10x, LMS11x, LMS15x, LMS12x, LMS13x, LMS14x, LMS5xx, LMS53x, MSC800, RFH. | ||
| CVE-2020-2077 | Hig | 0.49 | 7.5 | 0.01 | Jul 29, 2020 | SICK Package Analytics software up to and including version V04.0.0 are vulnerable due to incorrect default permissions settings. An unauthorized attacker could read sensitive data from the system by querying for known files using the REST API directly. | ||
| CVE-2019-14753 | Hig | 0.49 | 7.5 | 0.01 | Sep 24, 2019 | SICK FX0-GPNT00000 and FX0-GENT00000 devices through 3.4.0 have a Buffer Overflow | ||
| CVE-2022-43990 | Hig | 0.48 | 7.3 | 0.01 | Nov 1, 2022 | Password recovery vulnerability in SICK SIM1012 Partnumber 1098146 with firmware version <2.2.0 allows an unprivileged remote attacker to gain access to the userlevel defined as RecoverableUserLevel by invocating the password recovery mechanism method. This leads to an increase… | ||
| CVE-2022-43989 | Hig | 0.48 | 7.3 | 0.01 | Nov 1, 2022 | Password recovery vulnerability in SICK SIM2x00 (ARM) Partnumber 1092673 and 1081902 with firmware version < 1.2.0 allows an unprivileged remote attacker to gain access to the userlevel defined as RecoverableUserLevel by invocating the password recovery mechanism method. This… | ||
| CVE-2024-10774 | Hig | 0.47 | 7.3 | 0.00 | Dec 6, 2024 | Unauthenticated CROWN APIs allow access to critical functions. This leads to the accessibility of large parts of the web application without authentication. | ||
| CVE-2023-43698 | Hig | 0.46 | 7.1 | 0.00 | Oct 9, 2023 | Improper Neutralization of Input During Web Page Generation (’Cross-site Scripting’) in RDT400 in SICK APU allows an unprivileged remote attacker to run arbitrary code in the clients browser via injecting code into the website. | ||
| CVE-2026-1627 | Med | 0.42 | 6.5 | 0.00 | Feb 27, 2026 | An attacker may exploit the use of outdated and weak MAC algorithms in the device’s SSH service to potentially compromise the integrity of the SSH session, allowing manipulation of transmitted data if the attacker can interact with the network traffic. | ||
| CVE-2026-1626 | Med | 0.42 | 6.5 | 0.00 | Feb 27, 2026 | An attacker may exploit the use of weak CBC-based cipher suites in the device’s SSH service to potentially observe or manipulate parts of the encrypted SSH communication, if they are able to intercept or interact with the network traffic. | ||
| CVE-2025-59462 | Med | 0.42 | 6.5 | 0.01 | Oct 27, 2025 | An attacker who tampers with the C++ CLI client may crash the UpdateService during file transfers, disrupting updates and availability. | ||
| CVE-2025-58591 | Med | 0.42 | 6.5 | 0.00 | Oct 6, 2025 | A remote, unauthorized attacker can brute force folders and files and read them like private keys or configurations, making the application vulnerable for gathering sensitive information. | ||
| CVE-2025-58590 | Med | 0.42 | 6.5 | 0.00 | Oct 6, 2025 | It's possible to brute force folders and files, what can be used by an attacker to steal sensitve information. | ||
| CVE-2025-58587 | Med | 0.42 | 6.5 | 0.00 | Oct 6, 2025 | The application does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame, making it possible for an attacker to guess user credentials. | ||
| CVE-2025-58580 | Med | 0.42 | 6.5 | 0.00 | Oct 6, 2025 | An API endpoint allows arbitrary log entries to be created via POST request. Without sufficient validation of the input data, an attacker can create manipulated log entries and thus falsify or dilute logs, for example. | ||
| CVE-2025-27458 | Med | 0.42 | 6.5 | 0.00 | Jul 3, 2025 | The VNC authentication mechanism bases on a challenge-response system where both server and client use the same password for encryption. The challenge is sent from the server to the client, is encrypted by the client and sent back. The server does the same encryption locally and… | ||
| CVE-2025-27457 | Med | 0.42 | 6.5 | 0.00 | Jul 3, 2025 | All communication between the VNC server and client(s) is unencrypted. This allows an attacker to intercept the traffic and obtain sensitive data. | ||
| CVE-2025-27450 | Med | 0.42 | 6.5 | 0.00 | Jul 3, 2025 | The Secure attribute is missing on multiple cookies provided by the MEAC300-FNADE4. An attacker can trick a user to establish an unencrypted HTTP connection to the server and intercept the request containing the PHPSESSID cookie. | ||
| CVE-2025-1709 | Med | 0.42 | 6.5 | 0.00 | Jul 3, 2025 | Several credentials for the local PostgreSQL database are stored in plain text (partially base64 encoded). | ||
| CVE-2025-49200 | Med | 0.42 | 6.5 | 0.00 | Jun 12, 2025 | The created backup files are unencrypted, making the application vulnerable for gathering sensitive information by downloading and decompressing the backup files. | ||
| CVE-2025-49197 | Med | 0.42 | 6.5 | 0.00 | Jun 12, 2025 | The application uses a weak password hash function, allowing an attacker to crack the weak password hash to gain access to an FTP user account. | ||
| CVE-2025-49196 | Med | 0.42 | 6.5 | 0.00 | Jun 12, 2025 | A service supports the use of a deprecated and unsafe TLS version. This could be exploited to expose sensitive information, modify data in unexpected ways or spoof identities of other users or devices, affecting the confidentiality and integrity of the device. | ||
| CVE-2023-43697 | Med | 0.42 | 6.5 | 0.01 | Oct 9, 2023 | Modification of Assumed-Immutable Data (MAID) in RDT400 in SICK APU allows an unprivileged remote attacker to make the site unable to load necessary strings via changing file paths using HTTP requests. | ||
| CVE-2022-46834 | Med | 0.42 | 6.5 | 0.00 | Dec 13, 2022 | Use of a Broken or Risky Cryptographic Algorithm in SICK RFU65x firmware version < v2.21 allows a low-privileged remote attacker to decrypt the encrypted data if the user requested weak cipher suites to be used for encryption via the SSH interface. The patch and installation… | ||
| CVE-2022-46833 | Med | 0.42 | 6.5 | 0.00 | Dec 13, 2022 | Use of a Broken or Risky Cryptographic Algorithm in SICK RFU63x firmware version < v2.21 allows a low-privileged remote attacker to decrypt the encrypted data if the user requested weak cipher suites to be used for encryption via the SSH interface. The patch and installation… | ||
| CVE-2022-46832 | Med | 0.42 | 6.5 | 0.00 | Dec 13, 2022 | Use of a Broken or Risky Cryptographic Algorithm in SICK RFU62x firmware version < 2.21 allows a low-privileged remote attacker to decrypt the encrypted data if the user requested weak cipher suites to be used for encryption via the SSH interface. The patch and installation… | ||
| CVE-2022-27581 | Med | 0.42 | 6.5 | 0.00 | Dec 13, 2022 | Use of a Broken or Risky Cryptographic Algorithm in SICK RFU61x firmware version <v2.25 allows a low-privileged remote attacker to decrypt the encrypted data if the user requested weak cipher suites to be used for encryption via the SSH interface. The patch and installation… | ||
| CVE-2020-2078 | Med | 0.42 | 6.5 | 0.01 | Jul 29, 2020 | Passwords are stored in plain text within the configuration of SICK Package Analytics software up to and including V04.1.1. An authorized attacker could access these stored plaintext credentials and gain access to the ftp service. Storing a password in plaintext allows attackers… | ||
| CVE-2023-23450 | Med | 0.40 | 6.2 | 0.01 | May 15, 2023 | Use of Password Hash Instead of Password for Authentication in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged remote attacker to use a password hash instead of an actual password to login to a valid… | ||
| CVE-2023-5100 | Med | 0.38 | 5.9 | 0.00 | Oct 9, 2023 | Cleartext Transmission of Sensitive Information in RDT400 in SICK APU allows an unprivileged remote attacker to retrieve potentially sensitive information via intercepting network traffic that is not encrypted. | ||
| CVE-2025-59459 | Med | 0.36 | 5.5 | 0.00 | Oct 27, 2025 | An attacker that gains SSH access to an unprivileged account may be able to disrupt services (including SSH), causing persistent loss of availability. | ||
| CVE-2025-49185 | Med | 0.36 | 5.5 | 0.00 | Jun 12, 2025 | The web application is susceptible to cross-site-scripting attacks. An attacker who can create new dashboard widgets can inject malicious JavaScript code into the Transform Function which will be executed when the widget receives data from its data source. |
- risk 0.49cvss 7.5epss 0.01
The maxView Storage Manager does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame, making it susceptible to brute-force attacks.
- risk 0.49cvss 7.5epss 0.00
The server supports authentication methods in which credentials are sent in plaintext over unencrypted channels. If an attacker were to intercept traffic between a client and this server, the credentials would be exposed.
- risk 0.49cvss 7.5epss 0.00
A remote unauthorized attacker may gather sensitive information of the application, due to missing authorization of configuration settings of the product.
- risk 0.49cvss 7.5epss 0.00
All communication with the REST API is unencrypted (HTTP), allowing an attacker to intercept traffic between an actor and the webserver. This leads to the possibility of information gathering and downloading media files.
- risk 0.49cvss 7.5epss 0.00
Files in the source code contain login credentials for the admin user and the property configuration password, allowing an attacker to get full access to the application.
- risk 0.49cvss 7.5epss 0.01
A remote unauthenticated attacker may be able to change the IP adress of the device, and therefore affecting the availability of the device.
- risk 0.49cvss 7.5epss 0.00
The device uses an unencrypted, proprietary protocol for communication. Through this protocol, configuration data is transmitted and device authentication is performed. An attacker can thereby intercept the authentication hash and use it to log into the device using a…
- risk 0.49cvss 7.5epss 0.01
A vulnerability allows a remote unauthenticated attacker to modify the prod uct’s IP address over the Sopas ET interface. This can lead to a Denial of Service attack.
- risk 0.49cvss 7.5epss 0.01
Improper Restriction of Excessive Authentication Attempts in RDT400 in SICK APU allows an unprivileged remote attacker to guess the password via trial-and-error as the login attempts are not limited.
- risk 0.49cvss 7.5epss 0.01
A remote unprivileged attacker can sent multiple packages to the LMS5xx to disrupt its availability through a TCP SYN-based denial-of-service (DDoS) attack. By exploiting this vulnerability, an attacker can flood the targeted LMS5xx with a high volume of TCP SYN requests,…
- risk 0.49cvss 7.5epss 0.00
The LMS5xx uses weak hash generation methods, resulting in the creation of insecure hashs. If an attacker manages to retrieve the hash, it could lead to collision attacks and the potential retrieval of the password.
- risk 0.49cvss 7.5epss 0.01
Improper Access Control in the SICK ICR890-4 could allow an unauthenticated remote attacker to affect the availability of the device by changing settings of the device such as the IP address based on missing access control.
- risk 0.49cvss 7.5epss 0.01
Cleartext Transmission of Sensitive Information in the SICK ICR890-4 could allow a remote attacker to gather sensitive information by intercepting network traffic that is not encrypted.
- risk 0.49cvss 7.5epss 0.01
Unauthenticated endpoints in the SICK ICR890-4 could allow an unauthenticated remote attacker to retrieve sensitive information about the device via HTTP requests.
- risk 0.49cvss 7.5epss 0.01
Uncontrolled Resource Consumption in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged remote attacker to influence the availability of the webserver by invocing several open file requests via the REST…
- risk 0.49cvss 7.5epss 0.01
Improper Access Control in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged remote attacker to download files by using a therefore unpriviledged account via the REST interface.
- risk 0.49cvss 7.5epss 0.01
Improper Access Control in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged remote attacker to gain unauthorized access to data fields by using a therefore unpriviledged account via the REST interface.
- risk 0.49cvss 7.5epss 0.01
Missing Authentication for Critical Function in SICK Flexi Classic and Flexi Soft Gateways with Partnumbers 1042193, 1042964, 1044078, 1044072, 1044073, 1044074, 1099830, 1099832, 1127717, 1069070, 1112296, 1051432, 1102420, 1127487, 1121596, 1121597 allows an unauthenticated…
- risk 0.49cvss 7.5epss 0.01
SICK SOPAS ET before version 4.8.0 allows attackers to manipulate the command line arguments to pass in any value to the Emulator executable.
- risk 0.49cvss 7.5epss 0.01
Platform mechanism AutoIP allows remote attackers to reboot the device via a crafted packet in SICK AG solutions Bulkscan LMS111, Bulkscan LMS511, CLV62x – CLV65x, ICR890-3, LMS10x, LMS11x, LMS15x, LMS12x, LMS13x, LMS14x, LMS5xx, LMS53x, MSC800, RFH.
- risk 0.49cvss 7.5epss 0.01
SICK Package Analytics software up to and including version V04.0.0 are vulnerable due to incorrect default permissions settings. An unauthorized attacker could read sensitive data from the system by querying for known files using the REST API directly.
- risk 0.49cvss 7.5epss 0.01
SICK FX0-GPNT00000 and FX0-GENT00000 devices through 3.4.0 have a Buffer Overflow
- risk 0.48cvss 7.3epss 0.01
Password recovery vulnerability in SICK SIM1012 Partnumber 1098146 with firmware version <2.2.0 allows an unprivileged remote attacker to gain access to the userlevel defined as RecoverableUserLevel by invocating the password recovery mechanism method. This leads to an increase…
- risk 0.48cvss 7.3epss 0.01
Password recovery vulnerability in SICK SIM2x00 (ARM) Partnumber 1092673 and 1081902 with firmware version < 1.2.0 allows an unprivileged remote attacker to gain access to the userlevel defined as RecoverableUserLevel by invocating the password recovery mechanism method. This…
- risk 0.47cvss 7.3epss 0.00
Unauthenticated CROWN APIs allow access to critical functions. This leads to the accessibility of large parts of the web application without authentication.
- risk 0.46cvss 7.1epss 0.00
Improper Neutralization of Input During Web Page Generation (’Cross-site Scripting’) in RDT400 in SICK APU allows an unprivileged remote attacker to run arbitrary code in the clients browser via injecting code into the website.
- risk 0.42cvss 6.5epss 0.00
An attacker may exploit the use of outdated and weak MAC algorithms in the device’s SSH service to potentially compromise the integrity of the SSH session, allowing manipulation of transmitted data if the attacker can interact with the network traffic.
- risk 0.42cvss 6.5epss 0.00
An attacker may exploit the use of weak CBC-based cipher suites in the device’s SSH service to potentially observe or manipulate parts of the encrypted SSH communication, if they are able to intercept or interact with the network traffic.
- risk 0.42cvss 6.5epss 0.01
An attacker who tampers with the C++ CLI client may crash the UpdateService during file transfers, disrupting updates and availability.
- risk 0.42cvss 6.5epss 0.00
A remote, unauthorized attacker can brute force folders and files and read them like private keys or configurations, making the application vulnerable for gathering sensitive information.
- risk 0.42cvss 6.5epss 0.00
It's possible to brute force folders and files, what can be used by an attacker to steal sensitve information.
- risk 0.42cvss 6.5epss 0.00
The application does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame, making it possible for an attacker to guess user credentials.
- risk 0.42cvss 6.5epss 0.00
An API endpoint allows arbitrary log entries to be created via POST request. Without sufficient validation of the input data, an attacker can create manipulated log entries and thus falsify or dilute logs, for example.
- risk 0.42cvss 6.5epss 0.00
The VNC authentication mechanism bases on a challenge-response system where both server and client use the same password for encryption. The challenge is sent from the server to the client, is encrypted by the client and sent back. The server does the same encryption locally and…
- risk 0.42cvss 6.5epss 0.00
All communication between the VNC server and client(s) is unencrypted. This allows an attacker to intercept the traffic and obtain sensitive data.
- risk 0.42cvss 6.5epss 0.00
The Secure attribute is missing on multiple cookies provided by the MEAC300-FNADE4. An attacker can trick a user to establish an unencrypted HTTP connection to the server and intercept the request containing the PHPSESSID cookie.
- risk 0.42cvss 6.5epss 0.00
Several credentials for the local PostgreSQL database are stored in plain text (partially base64 encoded).
- risk 0.42cvss 6.5epss 0.00
The created backup files are unencrypted, making the application vulnerable for gathering sensitive information by downloading and decompressing the backup files.
- risk 0.42cvss 6.5epss 0.00
The application uses a weak password hash function, allowing an attacker to crack the weak password hash to gain access to an FTP user account.
- risk 0.42cvss 6.5epss 0.00
A service supports the use of a deprecated and unsafe TLS version. This could be exploited to expose sensitive information, modify data in unexpected ways or spoof identities of other users or devices, affecting the confidentiality and integrity of the device.
- risk 0.42cvss 6.5epss 0.01
Modification of Assumed-Immutable Data (MAID) in RDT400 in SICK APU allows an unprivileged remote attacker to make the site unable to load necessary strings via changing file paths using HTTP requests.
- risk 0.42cvss 6.5epss 0.00
Use of a Broken or Risky Cryptographic Algorithm in SICK RFU65x firmware version < v2.21 allows a low-privileged remote attacker to decrypt the encrypted data if the user requested weak cipher suites to be used for encryption via the SSH interface. The patch and installation…
- risk 0.42cvss 6.5epss 0.00
Use of a Broken or Risky Cryptographic Algorithm in SICK RFU63x firmware version < v2.21 allows a low-privileged remote attacker to decrypt the encrypted data if the user requested weak cipher suites to be used for encryption via the SSH interface. The patch and installation…
- risk 0.42cvss 6.5epss 0.00
Use of a Broken or Risky Cryptographic Algorithm in SICK RFU62x firmware version < 2.21 allows a low-privileged remote attacker to decrypt the encrypted data if the user requested weak cipher suites to be used for encryption via the SSH interface. The patch and installation…
- risk 0.42cvss 6.5epss 0.00
Use of a Broken or Risky Cryptographic Algorithm in SICK RFU61x firmware version <v2.25 allows a low-privileged remote attacker to decrypt the encrypted data if the user requested weak cipher suites to be used for encryption via the SSH interface. The patch and installation…
- risk 0.42cvss 6.5epss 0.01
Passwords are stored in plain text within the configuration of SICK Package Analytics software up to and including V04.1.1. An authorized attacker could access these stored plaintext credentials and gain access to the ftp service. Storing a password in plaintext allows attackers…
- risk 0.40cvss 6.2epss 0.01
Use of Password Hash Instead of Password for Authentication in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged remote attacker to use a password hash instead of an actual password to login to a valid…
- risk 0.38cvss 5.9epss 0.00
Cleartext Transmission of Sensitive Information in RDT400 in SICK APU allows an unprivileged remote attacker to retrieve potentially sensitive information via intercepting network traffic that is not encrypted.
- risk 0.36cvss 5.5epss 0.00
An attacker that gains SSH access to an unprivileged account may be able to disrupt services (including SSH), causing persistent loss of availability.
- risk 0.36cvss 5.5epss 0.00
The web application is susceptible to cross-site-scripting attacks. An attacker who can create new dashboard widgets can inject malicious JavaScript code into the Transform Function which will be executed when the widget receives data from its data source.
Page 2 of 4