9.1
CVE-2026-22908
- EPSS 0.08%
- Veröffentlicht 15.01.2026 13:16:05
- Zuletzt bearbeitet 23.01.2026 15:46:56
- Quelle psirt@sick.de
- CVE-Watchlists
- Unerledigt
Uploading unvalidated container images may allow remote attackers to gain full access to the system, potentially compromising its integrity and confidentiality.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Sick ≫ Tdc-x401gl Firmware Version < 1.4.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.08% | 0.242 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.1 | 3.9 | 5.2 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
|
| psirt@sick.de | 9.1 | 2.3 | 6 |
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
|
CWE-266 Incorrect Privilege Assignment
A product incorrectly assigns a privilege to a particular actor, creating an unintended sphere of control for that actor.