Vulnerability index

Browse CVEs

50 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Field Analytics MEDIUM 6.1
CVE-2025-49191

Linked URLs during the creation of iFrame widgets and dashboards are vulnerable to code execution. The URLs get embedded as iFrame widgets, making it…

Mitigation only
Fix from $1,600 2025-06-12
Field Analytics MEDIUM 5.8
CVE-2025-49190

The application is vulnerable to Server-Side Request Forgery (SSRF). An endpoint can be used to send server internal requests to other ports.

Mitigation only
Fix from $1,600 2025-06-12
Field Analytics MEDIUM 5.3
CVE-2025-49187

For failed login attempts, the application returns different error messages depending on whether the login failed due to an incorrect password or a n…

Mitigation only
Fix from $1,600 2025-06-12
Media Server HIGH 8.6
CVE-2025-49181

Due to missing authorization of an API endpoint, unauthorized users can send HTTP GET requests to gather sensitive information. An attacker could als…

Mitigation only
Fix from $1,950 2025-06-12
Media Server HIGH 7.5
CVE-2025-49183

All communication with the REST API is unencrypted (HTTP), allowing an attacker to intercept traffic between an actor and the webserver. This leads t…

Mitigation only
Fix from $1,950 2025-06-12
Baggage Analytics HIGH 7.5
CVE-2025-49184

A remote unauthorized attacker may gather sensitive information of the application, due to missing authorization of configuration settings of the pro…

Mitigation only
Fix from $1,950 2025-06-12
Field Analytics MEDIUM 5.4
CVE-2025-49185

The web application is susceptible to cross-site-scripting attacks. An attacker who can create new dashboard widgets can inject malicious JavaScript …

Mitigation only
Fix from $1,600 2025-06-12
Fx0 Gent00000 Firmware HIGH 8.8
CVE-2023-5246

Authentication Bypass by Capture-replay in SICK Flexi Soft Gateways with Partnumbers 1044073, 1127717, 1130282, 1044074, 1121597, 1099832, 1051432, 1…

Mitigation only
Fix from $1,950 2023-10-23
Sim1012 0p0g200 Firmware CRITICAL 9.8
CVE-2023-5288

A remote unauthorized attacker may connect to the SIM1012, interact with the device and change configuration settings. The adversary may also reset t…

Mitigation only
Fix from $2,300 2023-09-29
Lms531 Firmware HIGH 8.8
CVE-2023-4419

The LMS5xx uses hard-coded credentials, which potentially allow low-skilled unauthorized remote attackers to reconfigure settings and /or disrupt the…

Mitigation only
Fix from $1,950 2023-08-24
Lms531 Firmware HIGH 7.4
CVE-2023-4420

A remote unprivileged attacker can intercept the communication via e.g. Man-In-The-Middle, due to the absence of Transport Layer Security (TLS) in th…

Mitigation only
Fix from $1,950 2023-08-24
Lms531 Firmware HIGH 7.5
CVE-2023-4418

A remote unprivileged attacker can sent multiple packages to the LMS5xx to disrupt its availability through a TCP SYN-based denial-of-service (DDoS) …

Mitigation only
Fix from $1,950 2023-08-24
Lms531 Firmware HIGH 7.5
CVE-2023-31412

The LMS5xx uses weak hash generation methods, resulting in the creation of insecure hashs. If an attacker manages to retrieve the hash, it could lead…

Mitigation only
Fix from $1,950 2023-08-24
Sick Eventcam App CRITICAL 9.8
CVE-2023-31411

A remote unprivileged attacker can modify and access configuration settings on the EventCam App due to the absence of API authentication. The lack of…

Mitigation only
Fix from $2,300 2023-06-19
Sick Eventcam App HIGH 7.4
CVE-2023-31410

A remote unprivileged attacker can intercept the communication via e.g. Man-In-The-Middle, due to the absence of Transport Layer Security (TLS) in th…

Mitigation only
Fix from $1,950 2023-06-19
Ue410 En4 Firmware HIGH 8.2
CVE-2023-23444

Missing Authentication for Critical Function in SICK Flexi Classic and Flexi Soft Gateways with Partnumbers 1042193, 1042964, 1044078, 1044072, 10440…

Mitigation only
Fix from $1,950 2023-05-12
Fx0 Gpnt00000 Firmware CRITICAL 9.8
CVE-2023-23452

Missing Authentication for Critical Function in SICK FX0-GPNT v3 Firmware Version V3.04 and V3.05 allows an unprivileged remote attacker to achieve a…

Mitigation only
Fix from $2,300 2023-02-20
Fx0 Gent00010 Firmware CRITICAL 9.8
CVE-2023-23453

Missing Authentication for Critical Function in SICK FX0-GENT v3 Firmware Version V3.04 and V3.05 allows an unprivileged remote attacker to achieve a…

Mitigation only
Fix from $2,300 2023-02-20
Sim2000st Firmware CRITICAL 9.8
CVE-2022-27584

Password recovery vulnerability in SICK SIM2000ST Partnumber 1080579 allows an unprivileged remote attacker to gain access to the userlevel defined a…

Mitigation only
Fix from $2,300 2022-11-01
Overall Equipment Effectiveness HIGH 7.8
CVE-2022-27578

An attacker can perform a privilege escalation through the SICK OEE if the application is installed in a directory where non authenticated or low pri…

Mitigation only
Fix from $1,950 2022-04-11