CNNVD-202510-3584 Information

CNNVD ID

CNNVD-202510-3584

CVE-2025-59461

  • CNNVD Published: 2025-10-27

Description (Chinese)

SICK AG TLOC100-100是德国SICK公司的一款移动机器人定位系统。 SICK AG TLOC100-100存在安全漏洞,该漏洞源于未经验证的C++ API可能被远程攻击者利用,导致敏感数据被访问或修改以及服务中断。

Description (English)

SICK AG TLOC 100-100 is a mobile robotic positioning system of the German company SICK. SICK AG TLOC 100-100 has a security loophole, which stems from the potential use of uncertified C++ API by remote assailants, resulting in access to or modification of sensitive data and disruption of services.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

西克

Published

2025-10-27

Last Modified

2026-02-24

References

https://sick.com/psirt https://www.cisa.gov/resources-tools/resources/ics-recommended-practices https://www.first.org/cvss/calculator/3.1 https://www.sick.com/.well-known/csaf/white/2025/sca-2025-0013.json https://www.sick.com/.well-known/csaf/white/2025/sca-2025-0013.pdf https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf

Patch

https://www.sick.com/us/en/

Share on: