Skip to content
Noroxi

SICK records

130 published records for vendor sick.

All records

130 records
  • SICK MSC800 all versions prior to Version 4.0, the affected firmware versions contain a hard-coded customer account password.

    CriticalCVSS 9.8No exploitEPSS 3%

    sick · msc800 firmwareJul 1, 2019

  • Password recovery vulnerability in SICK SIM4000 (PPC) Partnumber 1078787 allows an unprivileged remote attacker to gain access to the userle

    CriticalCVSS 9.8No exploitEPSS 1%

    sick · sim2000 firmwareNov 1, 2022

  • Password recovery vulnerability in SICK SIM2000ST Partnumber 1080579 allows an unprivileged remote attacker to gain access to the userlevel

    CriticalCVSS 9.8No exploitEPSS 1%

    sick · sim2000st firmwareNov 1, 2022

  • Password recovery vulnerability in SICK SIM1000 FX Partnumber 1097816 and 1097817 with firmware version <1.6.0 allows an unprivileged remote

    CriticalCVSS 9.8No exploitEPSS 1%

    sick · sim1000 fx firmwareNov 1, 2022

  • Password recovery vulnerability in SICK SIM1004 Partnumber 1098148 with firmware version <2.0.0 allows an unprivileged remote attacker to ga

    CriticalCVSS 9.8No exploitEPSS 1%

    sick · sim1004-0p0g311 firmwareNov 1, 2022

  • CVE-2020-2076
    39Monitor

    SICK Package Analytics software up to and including version V04.0.0 are vulnerable to an authentication bypass by directly interfacing with

    CriticalCVSS 9.8No exploitEPSS 1%

    sick · package analyticsJul 29, 2020

  • Missing Authentication for Critical Function in SICK FX0-GPNT v3 Firmware Version V3.04 and V3.05 allows an unprivileged remote attacker to

    CriticalCVSS 9.8No exploitEPSS 1%

    sick · fx0-gpnt00000 firmwareFeb 20, 2023

  • Missing Authentication for Critical Function in SICK FX0-GENT v3 Firmware Version V3.04 and V3.05 allows an unprivileged remote attacker to

    CriticalCVSS 9.8No exploitEPSS 1%

    sick · fx0-gent00010 firmwareFeb 20, 2023

  • A remote unprivileged attacker can modify and access configuration settings on the EventCam App due to the absence of API authentication.

    CriticalCVSS 9.8No exploitEPSS 1%

    sick · sick eventcam appJun 19, 2023

  • Password recovery vulnerability in SICK SIM2000ST Partnumber 2086502 with firmware version <1.13.4 allows an unprivileged remote attacker to

    CriticalCVSS 9.8No exploitEPSS 1%

    sick · sim2000 firmwareDec 16, 2022

  • Use of Password Hash Instead of Password for Authentication in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114

    CriticalCVSS 9.8No exploitEPSS 1%

    sick · ftmg-esd20axx firmwareMay 15, 2023

  • CVE-2023-5288
    39Monitor

    A remote unauthorized attacker may connect to the SIM1012, interact with the device and change configuration settings.

    CriticalCVSS 9.8No exploitEPSS 1%

    sick · sim1012-0p0g200 firmwareSep 29, 2023

  • Improper Access Control in SICK APU allows an unprivileged remote attacker to download as well as upload arbitrary files via anonymous acce

    CriticalCVSS 9.8No exploitEPSS 1%

    sick · apu0200 firmwareOct 9, 2023

  • The Flexi Classic and Flexi Soft Gateways SICK UE410-EN3 FLEXI ETHERNET GATEW.

    CriticalCVSS 9.8No exploitEPSS 1%

    sick · ue410-en3 firmwareApr 19, 2023

  • Credential disclosure

    CriticalCVSS 9.8No exploitEPSS 1%

    sick · media serverJun 12, 2025

  • No protection against brute-force attacks

    CriticalCVSS 9.8No exploitEPSS 1%

    sick · media serverJun 12, 2025

  • Improper Restriction of Excessive Authentication Attempts

    CriticalCVSS 9.8No exploitEPSS 0%

    sick · baggage analyticsOct 6, 2025

  • API does not require authentication

    CriticalCVSS 9.8No exploitEPSS 0%

    sick · tloc100-100 firmwareOct 27, 2025

  • Backup files can be modified and uploaded

    CriticalCVSS 9.8No exploitEPSS 0%

    sick · field analyticsJun 12, 2025

  • The vulnerability in the MSC800 in all versions before 4.15 allows for an attacker to predict the TCP initial sequence number.

    CriticalCVSS 9.1No exploitEPSS 1%

    sick · msc800 firmwareApr 11, 2022

  • Vulnerability in SICK CLV6xx, SICK Lector6xx and SICK RFx6xx

    CriticalCVSS 9.1No exploitEPSS 1%

    sick ag · sick clv6xxOct 17, 2024

  • A remote unprivileged attacker can interact with the configuration interface of a Flexi-Compact FLX3-CPUC1 or FLX3-CPUC2 running an affected

    CriticalCVSS 9.1No exploitEPSS 1%

    sick · flx3-cpuc1 firmwareOct 31, 2022

  • Uploading unvalidated container images may allow remote attackers to gain full access to the system, potentially compromising its integrity

    CriticalCVSS 9.1No exploitEPSS 1%

    sick · tdc-x401gl firmwareJan 15, 2026

  • SICK InspectorP61x, SICK InspectorP62x and SICK TiM3xx are vulnerable for pass-the-hash attacks

    CriticalCVSS 9.0No exploitEPSS 1%

    sick ag · sick inspectorp61xDec 6, 2024

  • Certain system functions may be accessed without proper authorization, allowing attackers to start, stop, or delete installed applications,

    CriticalCVSS 9.1No exploitEPSS 1%

    sick · tdc-x401gl firmwareJan 15, 2026