CNNVD-202601-2651 Information

CNNVD ID

CNNVD-202601-2651

CVE-2026-22645

  • CNNVD Published: 2026-01-15

Description (Chinese)

SICK Incoming Goods Suite是德国SICK公司的一款物流收货流程软件。 SICK Incoming Goods Suite存在安全漏洞,该漏洞源于应用程序向未经身份验证的参与者披露所有组件、版本和许可证信息,可能使攻击者能够利用已知漏洞。

Description (English)

SICK Incoming Goods Suite is a logistics receipt process software for SICK, Germany. SICK Incoming Goods Suite has a security loophole, which stems from the fact that the application discloses all components, versions and licence information to unidentified participants, which may enable the attackers to take advantage of known loopholes.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

西克

Published

2026-01-15

Last Modified

2026-02-24

References

https://sick.com/psirt https://www.cisa.gov/resources-tools/resources/ics-recommended-practices https://www.first.org/cvss/calculator/3.1 https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0002.json https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0002.pdf https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf

Patch

https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0002.pdf

Share on: