VYPR

Vendor CVEs

SICK AG

All CVEs

155 total · sorted by risk
  • CVE-2025-32471LowApr 28, 2025
    risk 0.24cvss 3.7epss 0.00

    The device’s passwords have not been adequately salted, making them vulnerable to password extraction attacks.

  • CVE-2025-49198LowJun 12, 2025
    risk 0.20cvss 3.1epss 0.00

    The Media Server’s authorization tokens have a poor quality of randomness. An attacker may be able to guess the token of an active user by computing plausible tokens.

  • CVE-2025-58589LowOct 6, 2025
    risk 0.18cvss 2.7epss 0.00

    When an error occurs in the application a full stacktrace is provided to the user. The stacktrace lists class and method names as well as other internal information. An attacker thus receives information about the technology used and the structure of the application.

  • CVE-2026-11841CriJul 28, 2026
    risk 0.00cvss 9.4epss 0.00

    An attacker may perform unauthenticated read and write operations on sensitive filesystem areas via the AppEngine Fileaccess over HTTP due to improper access restrictions. A critical filesystem directory was unintentionally exposed through the HTTP-based file access feature,…

  • CVE-2026-22920Jan 15, 2026
    risk 0.00cvss epss 0.00

    Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Page 4 of 4