Username Enumeration Vulnerability in SICK Products
CVE-2025-58586

5.3MEDIUM

What is CVE-2025-58586?

The vulnerability found in SICK Products allows attackers to exploit failed login attempts by returning distinct error messages. These messages indicate whether the failure was due to an incorrect password or a non-existent username. This information can be utilized by attackers to identify valid usernames, potentially leading to unauthorized access and further attacks.

Affected Version(s)

Baggage Analytics all versions

Enterprise Analytics all versions

Logistic Diagnostic Analytics all versions

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-58586 : Username Enumeration Vulnerability in SICK Products