CNNVD-202601-2648 Information

CNNVD ID

CNNVD-202601-2648

CVE-2026-22646

  • CNNVD Published: 2026-01-15

Description (Chinese)

SICK Incoming Goods Suite是德国SICK公司的一款物流收货流程软件。 SICK Incoming Goods Suite存在安全漏洞,该漏洞源于应用程序返回的错误消息暴露内部系统详细信息,可能为攻击者提供有价值的侦察信息。

Description (English)

SICK Incoming Goods Suite is a logistics receipt process software for SICK, Germany. There is a security loophole in SICK Incoming Goods Suite, which stems from the error in the information returned by the application that exposes the details of the internal system and may provide valuable detection information for the attackers.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

西克

Published

2026-01-15

Last Modified

2026-02-24

References

https://sick.com/psirt https://www.cisa.gov/resources-tools/resources/ics-recommended-practices https://www.first.org/cvss/calculator/3.1 https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0002.json https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0002.pdf https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf

Patch

https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0002.pdf

Share on: