When an error occurs in the application a full stacktrace is provided to the user. The stacktrace lists class and method names as well as other internal information. An attacker thus receives information about the technology used and the structure of the application.
References
| Link | Resource |
|---|---|
| https://sick.com/psirt | Vendor Advisory |
| https://www.cisa.gov/resources-tools/resources/ics-recommended-practices | US Government Resource |
| https://www.first.org/cvss/calculator/3.1 | Not Applicable |
| https://www.sick.com/.well-known/csaf/white/2025/sca-2025-0010.json | Vendor Advisory |
| https://www.sick.com/.well-known/csaf/white/2025/sca-2025-0010.pdf | Vendor Advisory |
| https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf | Product |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2025-10-06 07:15
Updated : 2026-01-27 19:45
NVD link : CVE-2025-58589
Mitre link : CVE-2025-58589
CVE.ORG link : CVE-2025-58589
JSON object : View
Products Affected
sick
- tire_analytics
- package_analytics
- baggage_analytics
- logistic_diagnostic_analytics
CWE
