We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.
Please see our statement on Data Privacy.
The web application is susceptible to cross-site-scripting attacks. An attacker who can create new dashboard widgets can inject malicious JavaScript code into the Transform Function which will be executed when the widget receives data from its data source.
Reserved 2025-06-03 | Published 2025-06-12 | Updated 2025-06-12 | Assigner SICK AGCWE-79 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting')
cdn.sick.com/...ation_CYBERSECURITY_BY_SICK_en_IM0084411.PDF
www.cisa.gov/...es-tools/resources/ics-recommended-practices
www.first.org/cvss/calculator/3.1
www.sick.com/.well-known/csaf/white/2025/sca-2025-0007.pdf
www.sick.com/.well-known/csaf/white/2025/sca-2025-0007.json
Support options