Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
MEDIUM 6.1
CVE-2025-49191
Linked URLs during the creation of iFrame widgets and dashboards are vulnerable to code execution. The URLs get embedded as iFrame widgets, making it…
Field Analytics
Mitigation only
MEDIUM 5.8
CVE-2025-49190
The application is vulnerable to Server-Side Request Forgery (SSRF). An endpoint can be used to send server internal requests to other ports.
Field Analytics
Mitigation only
MEDIUM 5.3
CVE-2025-49187
For failed login attempts, the application returns different error messages depending on whether the login failed due to an incorrect password or a n…
Field Analytics
Mitigation only
HIGH 8.6
CVE-2025-49181
Due to missing authorization of an API endpoint, unauthorized users can send HTTP GET
requests to gather sensitive information. An attacker could als…
Media Server
Mitigation only
HIGH 7.5
CVE-2025-49183
All communication with the REST API is unencrypted (HTTP), allowing an attacker to intercept traffic between an actor and the webserver. This leads t…
Media Server
Mitigation only
HIGH 7.5
CVE-2025-49184
A remote unauthorized attacker may gather sensitive information of the application, due to missing authorization of configuration settings of the pro…
Baggage Analytics
Mitigation only
MEDIUM 5.4
CVE-2025-49185
The web application is susceptible to cross-site-scripting attacks. An attacker who can create new dashboard widgets can inject malicious JavaScript …
Field Analytics
Mitigation only
HIGH 8.8
CVE-2023-5246
Authentication Bypass by Capture-replay in SICK Flexi Soft Gateways with Partnumbers 1044073, 1127717, 1130282, 1044074, 1121597, 1099832, 1051432, 1…
Fx0 Gent00000 Firmware
Mitigation only
CRITICAL 9.8
CVE-2023-5288
A remote unauthorized attacker may connect to the SIM1012, interact with the device and
change configuration settings. The adversary may also reset t…
Sim1012 0p0g200 Firmware
Mitigation only
HIGH 8.8
CVE-2023-4419
The LMS5xx uses hard-coded credentials, which potentially allow low-skilled
unauthorized remote attackers to reconfigure settings and /or disrupt the…
Lms531 Firmware
Mitigation only
HIGH 7.4
CVE-2023-4420
A remote unprivileged attacker can intercept the communication via e.g. Man-In-The-Middle, due to the absence of Transport Layer Security (TLS) in th…
Lms531 Firmware
Mitigation only
HIGH 7.5
CVE-2023-4418
A remote unprivileged attacker can sent multiple packages to the LMS5xx to disrupt its availability through a TCP SYN-based denial-of-service (DDoS) …
Lms531 Firmware
Mitigation only
HIGH 7.5
CVE-2023-31412
The LMS5xx uses weak hash generation methods, resulting in the creation of insecure hashs. If an attacker manages to retrieve the hash, it could lead…
Lms531 Firmware
Mitigation only
CRITICAL 9.8
CVE-2023-31411
A remote unprivileged attacker can modify and access configuration settings on the EventCam App due to the absence of API authentication. The lack of…
Sick Eventcam App
Mitigation only
HIGH 7.4
CVE-2023-31410
A remote unprivileged attacker can intercept the communication via e.g. Man-In-The-Middle, due to the absence of Transport Layer Security (TLS) in th…
Sick Eventcam App
Mitigation only
HIGH 8.2
CVE-2023-23444
Missing Authentication for Critical Function in SICK Flexi Classic and Flexi Soft Gateways with Partnumbers 1042193, 1042964, 1044078, 1044072, 10440…
Ue410 En4 Firmware
Mitigation only
CRITICAL 9.8
CVE-2023-23452
Missing Authentication for Critical Function in SICK FX0-GPNT v3 Firmware Version V3.04 and V3.05 allows an unprivileged remote attacker to achieve a…
Fx0 Gpnt00000 Firmware
Mitigation only
CRITICAL 9.8
CVE-2023-23453
Missing Authentication for Critical Function in SICK FX0-GENT v3 Firmware Version V3.04 and V3.05 allows an unprivileged remote attacker to achieve a…
Fx0 Gent00010 Firmware
Mitigation only
CRITICAL 9.8
CVE-2022-27584
Password recovery vulnerability in SICK SIM2000ST Partnumber 1080579 allows an unprivileged remote attacker to gain access to the userlevel defined a…
Sim2000st Firmware
Mitigation only
HIGH 7.8
CVE-2022-27578
An attacker can perform a privilege escalation through the SICK OEE if the application is installed in a directory where non authenticated or low pri…
Overall Equipment Effectiveness
Mitigation only