VYPR

Vendor CVEs

SICK AG

All CVEs

155 total · sorted by risk
  • CVE-2025-1710HigJul 3, 2025
    risk 0.49cvss 7.5epss 0.01

    The maxView Storage Manager does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame, making it susceptible to brute-force attacks.

  • CVE-2025-49194HigJun 12, 2025
    risk 0.49cvss 7.5epss 0.00

    The server supports authentication methods in which credentials are sent in plaintext over unencrypted channels. If an attacker were to intercept traffic between a client and this server, the credentials would be exposed.

  • CVE-2025-49184HigJun 12, 2025
    risk 0.49cvss 7.5epss 0.00

    A remote unauthorized attacker may gather sensitive information of the application, due to missing authorization of configuration settings of the product.

  • CVE-2025-49183HigJun 12, 2025
    risk 0.49cvss 7.5epss 0.00

    All communication with the REST API is unencrypted (HTTP), allowing an attacker to intercept traffic between an actor and the webserver. This leads to the possibility of information gathering and downloading media files.

  • CVE-2025-49182HigJun 12, 2025
    risk 0.49cvss 7.5epss 0.00

    Files in the source code contain login credentials for the admin user and the property configuration password, allowing an attacker to get full access to the application.

  • CVE-2025-32470HigApr 28, 2025
    risk 0.49cvss 7.5epss 0.01

    A remote unauthenticated attacker may be able to change the IP adress of the device, and therefore affecting the availability of the device.

  • CVE-2025-27594HigMar 14, 2025
    risk 0.49cvss 7.5epss 0.00

    The device uses an unencrypted, proprietary protocol for communication. Through this protocol, configuration data is transmitted and device authentication is performed. An attacker can thereby intercept the authentication hash and use it to log into the device using a…

  • CVE-2024-8751HigSep 12, 2024
    risk 0.49cvss 7.5epss 0.01

    A vulnerability allows a remote unauthenticated attacker to modify the prod uct’s IP address over the Sopas ET interface. This can lead to a Denial of Service attack.

  • CVE-2023-43699HigOct 9, 2023
    risk 0.49cvss 7.5epss 0.01

    Improper Restriction of Excessive Authentication Attempts in RDT400 in SICK APU allows an unprivileged remote attacker to guess the password via trial-and-error as the login attempts are not limited.

  • CVE-2023-4418HigAug 24, 2023
    risk 0.49cvss 7.5epss 0.01

    A remote unprivileged attacker can sent multiple packages to the LMS5xx to disrupt its availability through a TCP SYN-based denial-of-service (DDoS) attack. By exploiting this vulnerability, an attacker can flood the targeted LMS5xx with a high volume of TCP SYN requests,…

  • CVE-2023-31412HigAug 24, 2023
    risk 0.49cvss 7.5epss 0.00

    The LMS5xx uses weak hash generation methods, resulting in the creation of insecure hashs. If an attacker manages to retrieve the hash, it could lead to collision attacks and the potential retrieval of the password.

  • CVE-2023-3273HigJul 10, 2023
    risk 0.49cvss 7.5epss 0.01

    Improper Access Control in the SICK ICR890-4 could allow an unauthenticated remote attacker to affect the availability of the device by changing settings of the device such as the IP address based on missing access control.

  • CVE-2023-3272HigJul 10, 2023
    risk 0.49cvss 7.5epss 0.01

    Cleartext Transmission of Sensitive Information in the SICK ICR890-4 could allow a remote attacker to gather sensitive information by intercepting network traffic that is not encrypted.

  • CVE-2023-35696HigJul 10, 2023
    risk 0.49cvss 7.5epss 0.01

    Unauthenticated endpoints in the SICK ICR890-4 could allow an unauthenticated remote attacker to retrieve sensitive information about the device via HTTP requests.

  • CVE-2023-23447HigMay 15, 2023
    risk 0.49cvss 7.5epss 0.01

    Uncontrolled Resource Consumption in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged remote attacker to influence the availability of the webserver by invocing several open file requests via the REST…

  • CVE-2023-23446HigMay 15, 2023
    risk 0.49cvss 7.5epss 0.01

    Improper Access Control in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged remote attacker to download files by using a therefore unpriviledged account via the REST interface.

  • CVE-2023-23445HigMay 15, 2023
    risk 0.49cvss 7.5epss 0.01

    Improper Access Control in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged remote attacker to gain unauthorized access to data fields by using a therefore unpriviledged account via the REST interface.

  • CVE-2023-23444HigMay 12, 2023
    risk 0.49cvss 7.5epss 0.01

    Missing Authentication for Critical Function in SICK Flexi Classic and Flexi Soft Gateways with Partnumbers 1042193, 1042964, 1044078, 1044072, 1044073, 1044074, 1099830, 1099832, 1127717, 1069070, 1112296, 1051432, 1102420, 1127487, 1121596, 1121597 allows an unauthenticated…

  • CVE-2021-32499HigDec 17, 2021
    risk 0.49cvss 7.5epss 0.01

    SICK SOPAS ET before version 4.8.0 allows attackers to manipulate the command line arguments to pass in any value to the Emulator executable.

  • CVE-2020-2075HigAug 31, 2020
    risk 0.49cvss 7.5epss 0.01

    Platform mechanism AutoIP allows remote attackers to reboot the device via a crafted packet in SICK AG solutions Bulkscan LMS111, Bulkscan LMS511, CLV62x – CLV65x, ICR890-3, LMS10x, LMS11x, LMS15x, LMS12x, LMS13x, LMS14x, LMS5xx, LMS53x, MSC800, RFH.

  • CVE-2020-2077HigJul 29, 2020
    risk 0.49cvss 7.5epss 0.01

    SICK Package Analytics software up to and including version V04.0.0 are vulnerable due to incorrect default permissions settings. An unauthorized attacker could read sensitive data from the system by querying for known files using the REST API directly.

  • CVE-2019-14753HigSep 24, 2019
    risk 0.49cvss 7.5epss 0.01

    SICK FX0-GPNT00000 and FX0-GENT00000 devices through 3.4.0 have a Buffer Overflow

  • CVE-2022-43990HigNov 1, 2022
    risk 0.48cvss 7.3epss 0.01

    Password recovery vulnerability in SICK SIM1012 Partnumber 1098146 with firmware version <2.2.0 allows an unprivileged remote attacker to gain access to the userlevel defined as RecoverableUserLevel by invocating the password recovery mechanism method. This leads to an increase…

  • CVE-2022-43989HigNov 1, 2022
    risk 0.48cvss 7.3epss 0.01

    Password recovery vulnerability in SICK SIM2x00 (ARM) Partnumber 1092673 and 1081902 with firmware version < 1.2.0 allows an unprivileged remote attacker to gain access to the userlevel defined as RecoverableUserLevel by invocating the password recovery mechanism method. This…

  • CVE-2024-10774HigDec 6, 2024
    risk 0.47cvss 7.3epss 0.00

    Unauthenticated CROWN APIs allow access to critical functions. This leads to the accessibility of large parts of the web application without authentication.

  • CVE-2023-43698HigOct 9, 2023
    risk 0.46cvss 7.1epss 0.00

    Improper Neutralization of Input During Web Page Generation (’Cross-site Scripting’) in RDT400 in SICK APU allows an unprivileged remote attacker to run arbitrary code in the clients browser via injecting code into the website.

  • CVE-2026-1627MedFeb 27, 2026
    risk 0.42cvss 6.5epss 0.00

    An attacker may exploit the use of outdated and weak MAC algorithms in the device’s SSH service to potentially compromise the integrity of the SSH session, allowing manipulation of transmitted data if the attacker can interact with the network traffic.

  • CVE-2026-1626MedFeb 27, 2026
    risk 0.42cvss 6.5epss 0.00

    An attacker may exploit the use of weak CBC-based cipher suites in the device’s SSH service to potentially observe or manipulate parts of the encrypted SSH communication, if they are able to intercept or interact with the network traffic.

  • CVE-2025-59462MedOct 27, 2025
    risk 0.42cvss 6.5epss 0.01

    An attacker who tampers with the C++ CLI client may crash the UpdateService during file transfers, disrupting updates and availability.

  • CVE-2025-58591MedOct 6, 2025
    risk 0.42cvss 6.5epss 0.00

    A remote, unauthorized attacker can brute force folders and files and read them like private keys or configurations, making the application vulnerable for gathering sensitive information.

  • CVE-2025-58590MedOct 6, 2025
    risk 0.42cvss 6.5epss 0.00

    It's possible to brute force folders and files, what can be used by an attacker to steal sensitve information.

  • CVE-2025-58587MedOct 6, 2025
    risk 0.42cvss 6.5epss 0.00

    The application does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame, making it possible for an attacker to guess user credentials.

  • CVE-2025-58580MedOct 6, 2025
    risk 0.42cvss 6.5epss 0.00

    An API endpoint allows arbitrary log entries to be created via POST request. Without sufficient validation of the input data, an attacker can create manipulated log entries and thus falsify or dilute logs, for example.

  • CVE-2025-27458MedJul 3, 2025
    risk 0.42cvss 6.5epss 0.00

    The VNC authentication mechanism bases on a challenge-response system where both server and client use the same password for encryption. The challenge is sent from the server to the client, is encrypted by the client and sent back. The server does the same encryption locally and…

  • CVE-2025-27457MedJul 3, 2025
    risk 0.42cvss 6.5epss 0.00

    All communication between the VNC server and client(s) is unencrypted. This allows an attacker to intercept the traffic and obtain sensitive data.

  • CVE-2025-27450MedJul 3, 2025
    risk 0.42cvss 6.5epss 0.00

    The Secure attribute is missing on multiple cookies provided by the MEAC300-FNADE4. An attacker can trick a user to establish an unencrypted HTTP connection to the server and intercept the request containing the PHPSESSID cookie.

  • CVE-2025-1709MedJul 3, 2025
    risk 0.42cvss 6.5epss 0.00

    Several credentials for the local PostgreSQL database are stored in plain text (partially base64 encoded).

  • CVE-2025-49200MedJun 12, 2025
    risk 0.42cvss 6.5epss 0.00

    The created backup files are unencrypted, making the application vulnerable for gathering sensitive information by downloading and decompressing the backup files.

  • CVE-2025-49197MedJun 12, 2025
    risk 0.42cvss 6.5epss 0.00

    The application uses a weak password hash function, allowing an attacker to crack the weak password hash to gain access to an FTP user account.

  • CVE-2025-49196MedJun 12, 2025
    risk 0.42cvss 6.5epss 0.00

    A service supports the use of a deprecated and unsafe TLS version. This could be exploited to expose sensitive information, modify data in unexpected ways or spoof identities of other users or devices, affecting the confidentiality and integrity of the device.

  • CVE-2023-43697MedOct 9, 2023
    risk 0.42cvss 6.5epss 0.01

    Modification of Assumed-Immutable Data (MAID) in RDT400 in SICK APU allows an unprivileged remote attacker to make the site unable to load necessary strings via changing file paths using HTTP requests.

  • CVE-2022-46834MedDec 13, 2022
    risk 0.42cvss 6.5epss 0.00

    Use of a Broken or Risky Cryptographic Algorithm in SICK RFU65x firmware version < v2.21 allows a low-privileged remote attacker to decrypt the encrypted data if the user requested weak cipher suites to be used for encryption via the SSH interface. The patch and installation…

  • CVE-2022-46833MedDec 13, 2022
    risk 0.42cvss 6.5epss 0.00

    Use of a Broken or Risky Cryptographic Algorithm in SICK RFU63x firmware version < v2.21 allows a low-privileged remote attacker to decrypt the encrypted data if the user requested weak cipher suites to be used for encryption via the SSH interface. The patch and installation…

  • CVE-2022-46832MedDec 13, 2022
    risk 0.42cvss 6.5epss 0.00

    Use of a Broken or Risky Cryptographic Algorithm in SICK RFU62x firmware version < 2.21 allows a low-privileged remote attacker to decrypt the encrypted data if the user requested weak cipher suites to be used for encryption via the SSH interface. The patch and installation…

  • CVE-2022-27581MedDec 13, 2022
    risk 0.42cvss 6.5epss 0.00

    Use of a Broken or Risky Cryptographic Algorithm in SICK RFU61x firmware version <v2.25 allows a low-privileged remote attacker to decrypt the encrypted data if the user requested weak cipher suites to be used for encryption via the SSH interface. The patch and installation…

  • CVE-2020-2078MedJul 29, 2020
    risk 0.42cvss 6.5epss 0.01

    Passwords are stored in plain text within the configuration of SICK Package Analytics software up to and including V04.1.1. An authorized attacker could access these stored plaintext credentials and gain access to the ftp service. Storing a password in plaintext allows attackers…

  • CVE-2023-23450MedMay 15, 2023
    risk 0.40cvss 6.2epss 0.01

    Use of Password Hash Instead of Password for Authentication in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged remote attacker to use a password hash instead of an actual password to login to a valid…

  • CVE-2023-5100MedOct 9, 2023
    risk 0.38cvss 5.9epss 0.00

    Cleartext Transmission of Sensitive Information in RDT400 in SICK APU allows an unprivileged remote attacker to retrieve potentially sensitive information via intercepting network traffic that is not encrypted.

  • CVE-2025-59459MedOct 27, 2025
    risk 0.36cvss 5.5epss 0.00

    An attacker that gains SSH access to an unprivileged account may be able to disrupt services (including SSH), causing persistent loss of availability.

  • CVE-2025-49185MedJun 12, 2025
    risk 0.36cvss 5.5epss 0.00

    The web application is susceptible to cross-site-scripting attacks. An attacker who can create new dashboard widgets can inject malicious JavaScript code into the Transform Function which will be executed when the widget receives data from its data source.