Description

The web application is susceptible to cross-site-scripting attacks. An attacker who can create new dashboard widgets can inject malicious JavaScript code into the Transform Function which will be executed when the widget receives data from its data source.

INFO

Published Date :

2025-06-12T13:25:42.718Z

Last Modified :

2025-06-12T13:53:26.633Z

Source :

SICK AG
AFFECTED PRODUCTS

The following products are affected by CVE-2025-49185 vulnerability.

Vendors Products
Sick
  • Field Analytics

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact