The vendor explicitly identifies these products as affected by this CVE.
- SICK Baggage Analytics < 4.6.3
- SICK Tire Analytics < 4.6.3
- SICK Package Analytics < 4.6.3
- SICK Logistic Diagnostic Analytics < 4.6.3
- Summary
- A remote, unauthorized attacker can brute force folders and files and read them like private keys or configurations, making the application vulnerable for gathering sensitive information.
- Remediation
- It is strongly recommended to update the product to version 4.6.3.
