Session Hijacking Vulnerability in SICK Products
CVE-2026-22644
5.3MEDIUM
What is CVE-2026-22644?
Certain requests within SICK products are improperly configured, transmitting the authentication token as a string query parameter in the URL. This configuration makes the token vulnerable to exposure through server logs, proxy logs, and Referer headers. If exploited, this vulnerability could enable an attacker to hijack a user's session, potentially allowing unauthorized access to sensitive data and functionalities.
Affected Version(s)
Incoming Goods Suite all versions
