← Voltar para CVEs
CVE-2025-49198
LOW3.1
Descricao
The Media Server’s authorization tokens have a poor quality of randomness. An attacker may be able to guess the token of an active user by computing plausible tokens.
Detalhes CVE
Pontuacao CVSS v3.13.1
SeveridadeLOW
Vetor CVSSCVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N
Vetor de ataqueNETWORK
ComplexidadeHIGH
Privilegios necessariosNONE
Interacao do usuarioREQUIRED
Publicado6/12/2025
Ultima modificacao1/26/2026
Fontenvd
Avistamentos honeypot0
Produtos afetados
sick:media_server
Fraquezas (CWE)
CWE-330
Referencias
https://cdn.sick.com/media/docs/1/11/411/Special_information_CYBERSECURITY_BY_SICK_en_IM0084411.PDF(psirt@sick.de)
https://sick.com/psirt(psirt@sick.de)
https://www.first.org/cvss/calculator/3.1(psirt@sick.de)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.