CVE 5.3 MEDIUM

Plain Text Transmission of Username and Password in the URL_CVE-2025-58584

5.3 / 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Description

In the HTTP request, the username and password are transferred directly in the URL as parameters. However, URLs can be stored in various systems such as server logs, browser histories or proxy servers. As a result, there is a high risk that this sensitive data will be disclosed unintentionally.

Basic Information

ID CVE-2025-58584
Source SICK AG
Published Oct 6, 2025 at 07:01

Affected Product

Vendor SICK AG
Product Baggage Analytics
Version all versions
Affected Versions SICK AG Baggage Analytics all versions
SICK AG Tire Analytics all versions
SICK AG Package Analytics all versions
SICK AG Logistic Diagnostic Analytics all versions
SICK AG Enterprise Analytics all versions

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.