Vulnerabilities > Sick

DATE CVE VULNERABILITY TITLE RISK
2020-07-29 CVE-2020-2078 Insufficiently Protected Credentials vulnerability in Sick Package Analytics 04.0.0/04.1.1
Passwords are stored in plain text within the configuration of SICK Package Analytics software up to and including V04.1.1.
network
low complexity
sick CWE-522
6.5
2020-07-29 CVE-2020-2077 Incorrect Default Permissions vulnerability in Sick Package Analytics 04.0.0
SICK Package Analytics software up to and including version V04.0.0 are vulnerable due to incorrect default permissions settings.
network
low complexity
sick CWE-276
7.5
2020-07-29 CVE-2020-2076 Missing Authentication for Critical Function vulnerability in Sick Package Analytics 04.0.0
SICK Package Analytics software up to and including version V04.0.0 are vulnerable to an authentication bypass by directly interfacing with the REST API.
network
low complexity
sick CWE-306
critical
9.8
2019-09-24 CVE-2019-14753 Classic Buffer Overflow vulnerability in Sick Fx0-Gent00000 Firmware and Fx0-Gpnt00000 Firmware
SICK FX0-GPNT00000 and FX0-GENT00000 devices through 3.4.0 have a Buffer Overflow
network
low complexity
sick CWE-120
7.5
2019-07-01 CVE-2019-10979 Use of Hard-coded Credentials vulnerability in Sick Msc800 Firmware
SICK MSC800 all versions prior to Version 4.0, the affected firmware versions contain a hard-coded customer account password.
network
low complexity
sick CWE-798
critical
9.8