CVE-2025-49187
EUVD-2025-1818912.06.2025, 14:15
For failed login attempts, the application returns different error messages depending on whether the login failed due to an incorrect password or a non-existing username. This allows an attacker to guess usernames until they find an existing one.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| sick | field_analytics | * |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References