CVE-2025-49196CRITICAL 9.1EPSS p12.1%
CVE-2025-49196CVE-2025-49196
Description
A service supports the use of a deprecated and unsafe TLS version. This could be exploited to expose sensitive information, modify data in unexpected ways or spoof identities of other users or devices, affecting the confidentiality and integrity of the device.
Scoring
| CVSS 3.1 | 9.1 (CRITICAL) |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N |
| EPSS | 0.22% probability of exploitation · percentile 12.1% · 2026-06-19T12:03:05Z |
| Published | 2025-06-12 |
| Last modified | 2026-01-26 |
Underlying weaknesses· 1
References
- https://cdn.sick.com/media/docs/1/11/411/Special_information_CYBERSECURITY_BY_SICK_en_IM0084411.PDF
- https://sick.com/psirt
- https://www.cisa.gov/resources-tools/resources/ics-recommended-practices
- https://www.first.org/cvss/calculator/3.1
- https://www.sick.com/.well-known/csaf/white/2025/sca-2025-0007.json
- https://www.sick.com/.well-known/csaf/white/2025/sca-2025-0007.pdf
1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Use of a Broken or Risky Cryptographic Algorithmcwe-327 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.