CVE-2025-49183
All communication with the REST API is unencrypted (HTTP), allowing an attacker to intercept traffic between an actor and the webserver. This leads to the possibility of information gathering and downloading media files.
Vendor
Product
CWE
Yayın Tarihi
2025-06-12 14:15:30
Güncelleme
2026-01-29 17:59:18
Source Identifier
psirt@sick.de
KEV Date Added
-
Kategoriler
Referanslar
https://cdn.sick.com/media/docs/1/11/411/Special_information_CYBERSECURITY_BY_SICK_en_IM0084411.PDF
https://sick.com/psirt
https://www.cisa.gov/resources-tools/resources/ics-recommended-practices
https://www.first.org/cvss/calculator/3.1
https://www.sick.com/.well-known/csaf/white/2025/sca-2025-0007.json
https://www.sick.com/.well-known/csaf/white/2025/sca-2025-0007.pdf