Vulnerabilities > Sick

DATE CVE VULNERABILITY TITLE RISK
2021-06-28 CVE-2021-32496 Inadequate Encryption Strength vulnerability in Sick Visionary-S CX Firmware
SICK Visionary-S CX up version 5.21.2.29154R are vulnerable to an Inadequate Encryption Strength vulnerability concerning the internal SSH interface solely used by SICK for recovering returned devices.
network
sick CWE-326
3.5
2020-08-31 CVE-2020-2075 Improper Handling of Exceptional Conditions vulnerability in Sick products
Platform mechanism AutoIP allows remote attackers to reboot the device via a crafted packet in SICK AG solutions Bulkscan LMS111, Bulkscan LMS511, CLV62x – CLV65x, ICR890-3, LMS10x, LMS11x, LMS15x, LMS12x, LMS13x, LMS14x, LMS5xx, LMS53x, MSC800, RFH.
network
low complexity
sick CWE-755
5.0
2020-07-29 CVE-2020-2078 Insufficiently Protected Credentials vulnerability in Sick Package Analytics 04.0.0/04.1.1
Passwords are stored in plain text within the configuration of SICK Package Analytics software up to and including V04.1.1.
network
low complexity
sick CWE-522
4.0
2020-07-29 CVE-2020-2077 Incorrect Default Permissions vulnerability in Sick Package Analytics 04.0.0
SICK Package Analytics software up to and including version V04.0.0 are vulnerable due to incorrect default permissions settings.
network
low complexity
sick CWE-276
5.0
2020-07-29 CVE-2020-2076 Improper Authentication vulnerability in Sick Package Analytics 04.0.0
SICK Package Analytics software up to and including version V04.0.0 are vulnerable to an authentication bypass by directly interfacing with the REST API.
network
low complexity
sick CWE-287
7.5
2019-09-24 CVE-2019-14753 Classic Buffer Overflow vulnerability in Sick Fx0-Gent00000 Firmware and Fx0-Gpnt00000 Firmware
SICK FX0-GPNT00000 and FX0-GENT00000 devices through 3.4.0 have a Buffer Overflow
network
low complexity
sick CWE-120
5.0
2019-07-01 CVE-2019-10979 Use of Hard-coded Credentials vulnerability in Sick Msc800 Firmware
SICK MSC800 all versions prior to Version 4.0, the affected firmware versions contain a hard-coded customer account password.
network
low complexity
sick CWE-798
7.5