Unauthenticated Access Vulnerability in SICK CROWN APIs
CVE-2024-10774
Key Information:
- Vendor
Sick Ag
- Vendor
- CVE Published:
- 6 December 2024
What is CVE-2024-10774?
The CROWN APIs provided by SICK are affected by a significant vulnerability that permits unauthenticated access to critical functions within the web application. This defect enables unauthorized users to interact with sensitive areas of the system without proper authentication controls. As a result, this poses substantial risks to the integrity and confidentiality of the data handled by the affected product. Organizations utilizing SICK's CROWN APIs should take immediate actions to mitigate potential exploitation, such as applying patches and reviewing access controls to safeguard their web applications.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
SICK InspectorP61x 0
SICK InspectorP62x 0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
