CNNVD-202510-843 Information

CNNVD ID

CNNVD-202510-843

CVE-2025-58582

  • CNNVD Published: 2025-10-06

Description (Chinese)

SICK AG Enterprise Analytics是德国SICK AG公司的一个包裹分析软件。 SICK AG Enterprise Analytics存在安全漏洞,该漏洞源于未验证POST请求数据,可能导致记录巨型有效载荷。

Description (English)

SICK AG Enterprise Analytics is a package analysis software for SICK AG in Germany. SICK AG Enterprise Analytics had a security loophole, which originated from the failure to validate POST requested data and could lead to the recording of mega payloads.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

SICK AG

Published

2025-10-06

Last Modified

2026-02-24

References

https://sick.com/psirt https://www.cisa.gov/resources-tools/resources/ics-recommended-practices https://www.first.org/cvss/calculator/3.1 https://www.sick.com/.well-known/csaf/white/2025/sca-2025-0010.json https://www.sick.com/.well-known/csaf/white/2025/sca-2025-0010.pdf https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf

Patch

https://www.sick.com/de/en/service-and-support/the-sick-product-security-incident-response-team-sick-psirt/w/psirt

Share on: