CVE 5.3 MEDIUM

CVE-2026-22644_CVE-2026-22644

5.3 / 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Description

Certain requests pass the authentication token in the URL as string query parameter, making it vulnerable to theft through server logs, proxy logs and Referer headers, which could allow an attacker to hijack the user's session and gain unauthorized access.

Basic Information

ID CVE-2026-22644
Source SICK AG
Published Jan 15, 2026 at 13:14

Affected Product

Vendor SICK AG
Product Incoming Goods Suite
Version all versions
Affected Versions SICK AG Incoming Goods Suite all versions

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.