Remote Data Access Vulnerability in SICK Products
CVE-2025-59461

7.6HIGH

Key Information:

Vendor

Sick Ag

Vendor
CVE Published:
27 October 2025

What is CVE-2025-59461?

A vulnerability exists within SICK industrial products that allows remote unauthenticated attackers to access and potentially modify sensitive data through the C++ API. This can lead to service disruptions, posing a significant risk to data integrity and operational stability.

Affected Version(s)

TLOC100-100 all Firmware all versions

References

CVSS V3.1

Score:
7.6
Severity:
HIGH
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.