Home
MEDIUM: 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:NDefault status
affected
all versions (custom)
affected
Default status
affected
all versions (custom)
affected
Default status
affected
all versions (custom)
affected
Default status
affected
all versions (custom)
affected
Description
Multiple endpoints with sensitive information do not require authentication, making the application susceptible to information gathering.
Problem types
CWE-497 Exposure of Sensitive System Information to an Unauthorized Control Sphere
Product status
all versions (custom)
all versions (custom)
all versions (custom)
all versions (custom)
References
www.sick.com/...lines_cybersecurity_by_sick_en_im0106719.pdf
www.cisa.gov/...es-tools/resources/ics-recommended-practices
www.first.org/cvss/calculator/3.1
www.sick.com/.well-known/csaf/white/2025/sca-2025-0010.json
www.sick.com/.well-known/csaf/white/2025/sca-2025-0010.pdf