9.9
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Description
An attacker may gain unauthorized access to the host filesystem, potentially allowing them to read and modify system data.
AI Analysis
Unauthenticated access to the host filesystem, allowing potential data modification and system compromise
Basic Information
ID
CVE-2026-22907
Source
SICK AG
Published
Jan 15, 2026 at 12:59
Affected Product
Vendor
SICK AG
Product
TDC-X401GL
Affected Versions
SICK AG TDC-X401GL 0
CWE Classification
AI Assessment
AI Score
9.9 / 10
AI Severity
Critical
Vendor
SICK AG
Product
TDC-X401GL
References
- sick.com /psirt
- www.sick.com /media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf
- www.cisa.gov /resources-tools/resources/ics-recommended-practices
- www.first.org /cvss/calculator/3.1
- www.sick.com /.well-known/csaf/white/2026/sca-2026-0001.json
- www.sick.com /.well-known/csaf/white/2026/sca-2026-0001.pdf