Description
The web application is susceptible to cross-site-scripting attacks. An attacker who can create new dashboard widgets can inject malicious JavaScript code into the Transform Function which will be executed when the widget receives data from its data source.
INFO
Published Date :
2025-06-12T13:25:42.718Z
Last Modified :
2025-06-12T13:53:26.633Z
Source :
SICK AG
AFFECTED PRODUCTS
The following products are affected by CVE-2025-49185 vulnerability.
| Vendors | Products |
|---|---|
| Sick |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2025-49185.
CVSS Vulnerability Scoring System
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact