CVE 6.5 MEDIUM

Injection via log file_CVE-2025-58580

6.5 / 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L

Description

An API endpoint allows arbitrary log entries to be created via POST request. Without sufficient validation of the input data, an attacker can create manipulated log entries and thus falsify or dilute logs, for example.

Basic Information

ID CVE-2025-58580
Source SICK AG
Published Oct 6, 2025 at 06:49
Modified Oct 6, 2025 at 07:09

Affected Product

Vendor SICK AG
Product Enterprise Analytics
Version all versions
Affected Versions SICK AG Enterprise Analytics all versions

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.