The product is vulnerable to pass-the-hash attacks in combination with hardcoded credentials of hidden user levels. This means that an attacker can log in with the hidden user levels and gain
full access to the device.
Metrics
Affected Vendors & Products
References
History
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Mon, 09 Dec 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sick
Sick inspector61x Firmware Sick inspector62x Firmware Sick tim3xx |
|
| CPEs | cpe:2.3:a:sick:tim3xx:*:*:*:*:*:*:*:* cpe:2.3:o:sick:inspector61x_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:sick:inspector62x_firmware:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Sick
Sick inspector61x Firmware Sick inspector62x Firmware Sick tim3xx |
|
| Metrics |
ssvc
|
Fri, 06 Dec 2024 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The product is vulnerable to pass-the-hash attacks in combination with hardcoded credentials of hidden user levels. This means that an attacker can log in with the hidden user levels and gain full access to the device. | |
| Title | SICK InspectorP61x, SICK InspectorP62x and SICK TiM3xx are vulnerable for pass-the-hash attacks | |
| Weaknesses | CWE-912 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: SICK AG
Published: 2024-12-06T12:31:10.776Z
Updated: 2024-12-09T14:44:36.597Z
Reserved: 2024-11-04T13:07:00.547Z
Link: CVE-2024-10773
Updated: 2024-12-09T14:44:30.362Z
Status : Received
Published: 2024-12-06T13:15:05.897
Modified: 2024-12-06T13:15:05.897
Link: CVE-2024-10773
No data.