Vulnerability index

Browse CVEs

50 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.1 CVE-2025-49191 Linked URLs during the creation of iFrame widgets and dashboards are vulnerable to code execution. The URLs get embedded as iFrame widgets, making it… Field Analytics Mitigation only Fix from $1,6002025-06-12 MEDIUM 5.8 CVE-2025-49190 The application is vulnerable to Server-Side Request Forgery (SSRF). An endpoint can be used to send server internal requests to other ports. Field Analytics Mitigation only Fix from $1,6002025-06-12 MEDIUM 5.3 CVE-2025-49187 For failed login attempts, the application returns different error messages depending on whether the login failed due to an incorrect password or a n… Field Analytics Mitigation only Fix from $1,6002025-06-12 HIGH 8.6 CVE-2025-49181 Due to missing authorization of an API endpoint, unauthorized users can send HTTP GET requests to gather sensitive information. An attacker could als… Media Server Mitigation only Fix from $1,9502025-06-12 HIGH 7.5 CVE-2025-49183 All communication with the REST API is unencrypted (HTTP), allowing an attacker to intercept traffic between an actor and the webserver. This leads t… Media Server Mitigation only Fix from $1,9502025-06-12 HIGH 7.5 CVE-2025-49184 A remote unauthorized attacker may gather sensitive information of the application, due to missing authorization of configuration settings of the pro… Baggage Analytics Mitigation only Fix from $1,9502025-06-12 MEDIUM 5.4 CVE-2025-49185 The web application is susceptible to cross-site-scripting attacks. An attacker who can create new dashboard widgets can inject malicious JavaScript … Field Analytics Mitigation only Fix from $1,6002025-06-12 HIGH 8.8 CVE-2023-5246 Authentication Bypass by Capture-replay in SICK Flexi Soft Gateways with Partnumbers 1044073, 1127717, 1130282, 1044074, 1121597, 1099832, 1051432, 1… Fx0 Gent00000 Firmware Mitigation only Fix from $1,9502023-10-23 CRITICAL 9.8 CVE-2023-5288 A remote unauthorized attacker may connect to the SIM1012, interact with the device and change configuration settings. The adversary may also reset t… Sim1012 0p0g200 Firmware Mitigation only Fix from $2,3002023-09-29 HIGH 8.8 CVE-2023-4419 The LMS5xx uses hard-coded credentials, which potentially allow low-skilled unauthorized remote attackers to reconfigure settings and /or disrupt the… Lms531 Firmware Mitigation only Fix from $1,9502023-08-24 HIGH 7.4 CVE-2023-4420 A remote unprivileged attacker can intercept the communication via e.g. Man-In-The-Middle, due to the absence of Transport Layer Security (TLS) in th… Lms531 Firmware Mitigation only Fix from $1,9502023-08-24 HIGH 7.5 CVE-2023-4418 A remote unprivileged attacker can sent multiple packages to the LMS5xx to disrupt its availability through a TCP SYN-based denial-of-service (DDoS) … Lms531 Firmware Mitigation only Fix from $1,9502023-08-24 HIGH 7.5 CVE-2023-31412 The LMS5xx uses weak hash generation methods, resulting in the creation of insecure hashs. If an attacker manages to retrieve the hash, it could lead… Lms531 Firmware Mitigation only Fix from $1,9502023-08-24 CRITICAL 9.8 CVE-2023-31411 A remote unprivileged attacker can modify and access configuration settings on the EventCam App due to the absence of API authentication. The lack of… Sick Eventcam App Mitigation only Fix from $2,3002023-06-19 HIGH 7.4 CVE-2023-31410 A remote unprivileged attacker can intercept the communication via e.g. Man-In-The-Middle, due to the absence of Transport Layer Security (TLS) in th… Sick Eventcam App Mitigation only Fix from $1,9502023-06-19 HIGH 8.2 CVE-2023-23444 Missing Authentication for Critical Function in SICK Flexi Classic and Flexi Soft Gateways with Partnumbers 1042193, 1042964, 1044078, 1044072, 10440… Ue410 En4 Firmware Mitigation only Fix from $1,9502023-05-12 CRITICAL 9.8 CVE-2023-23452 Missing Authentication for Critical Function in SICK FX0-GPNT v3 Firmware Version V3.04 and V3.05 allows an unprivileged remote attacker to achieve a… Fx0 Gpnt00000 Firmware Mitigation only Fix from $2,3002023-02-20 CRITICAL 9.8 CVE-2023-23453 Missing Authentication for Critical Function in SICK FX0-GENT v3 Firmware Version V3.04 and V3.05 allows an unprivileged remote attacker to achieve a… Fx0 Gent00010 Firmware Mitigation only Fix from $2,3002023-02-20 CRITICAL 9.8 CVE-2022-27584 Password recovery vulnerability in SICK SIM2000ST Partnumber 1080579 allows an unprivileged remote attacker to gain access to the userlevel defined a… Sim2000st Firmware Mitigation only Fix from $2,3002022-11-01 HIGH 7.8 CVE-2022-27578 An attacker can perform a privilege escalation through the SICK OEE if the application is installed in a directory where non authenticated or low pri… Overall Equipment Effectiveness Mitigation only Fix from $1,9502022-04-11