All 8 CVE vulnerabilities found in SICK Media Server, with AI-generated Chinese analysis, references, and POCs.
Vendor: SICK AG
| CVE ID | Title | CVSS | Severity | Paused |
|---|---|---|---|---|
| CVE-2025-49198 | Poor quality of randomness in authorization tokens CWE-330 | 3.1 | Low | 2025-06-12 |
| CVE-2025-49197 | Deprecated TLS version supported CWE-328 | 6.5 | Medium | 2025-06-12 |
| CVE-2025-49195 | No protection against brute-force attacks CWE-307 | 5.3 | Medium | 2025-06-12 |
| CVE-2025-49194 | Unencrypted communication CWE-319 | 7.5 | High | 2025-06-12 |
| CVE-2025-49189 | Cookie missing HttpOnly flag CWE-1004 | 5.3 | Medium | 2025-06-12 |
| CVE-2025-49183 | Unencrypted communication (HTTP) CWE-319 | 7.5 | High | 2025-06-12 |
| CVE-2025-49182 | Credential disclosure CWE-540 | 7.5 | High | 2025-06-12 |
| CVE-2025-49181 | Configurations endpoint does not require authorization CWE-862 | 8.6 | High | 2025-06-12 |
All 8 known CVE vulnerabilities affecting SICK Media Server with full Chinese analysis, references, and POCs where available.