The vendor explicitly identifies these products as affected by this CVE.
- SICK ICR890-4 with Firmware <V2.5.0
- Summary
- Cleartext Storage on Disk in the SICK ICR890-4 could allow an unauthenticated attacker with local access to the device to disclose sensitive information by accessing a SD card.
- Remediation
- Please make sure that you apply general security practices when operating the SICK ICR890-4 like restricting physical access to the device. The following general security practices could mitigate the associated security risk.
