{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-09-30T13:32:42.022","vulnerabilities":[{"cve":{"id":"CVE-2025-49196","sourceIdentifier":"psirt@sick.de","published":"2025-06-12T15:15:39.857","lastModified":"2026-06-17T09:30:54.960","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"A service supports the use of a deprecated and unsafe TLS version. This could be exploited to expose sensitive information, modify data in unexpected ways or spoof identities of other users or devices, affecting the confidentiality and integrity of the device."},{"lang":"es","value":"Un servicio admite el uso de una versión de TLS obsoleta e insegura. Esto podría explotarse para exponer información confidencial, modificar datos de forma inesperada o suplantar la identidad de otros usuarios o dispositivos, lo que afectaría la confidencialidad e integridad del dispositivo."}],"affected":[{"source":"psirt@sick.de","affectedData":[{"vendor":"SICK AG","product":"SICK Field Analytics","defaultStatus":"affected","versions":[{"version":"all versions","versionType":"custom","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"psirt@sick.de","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:N","baseScore":6.5,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"HIGH","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"LOW","availabilityImpact":"NONE"},"exploitabilityScore":2.2,"impactScore":4.2},{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N","baseScore":9.1,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":5.2}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2025-06-12T14:38:45.930361Z","id":"CVE-2025-49196","options":[{"exploitation":"none"},{"automatable":"no"},{"technicalImpact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"psirt@sick.de","type":"Secondary","description":[{"lang":"en","value":"CWE-327"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sick:field_analytics:*:*:*:*:*:*:*:*","matchCriteriaId":"62EE84A7-E93D-411E-A6FC-4BEE5F4CD16D"}]}]}],"references":[{"url":"https://cdn.sick.com/media/docs/1/11/411/Special_information_CYBERSECURITY_BY_SICK_en_IM0084411.PDF","source":"psirt@sick.de","tags":["Broken Link"]},{"url":"https://sick.com/psirt","source":"psirt@sick.de","tags":["Vendor Advisory"]},{"url":"https://www.cisa.gov/resources-tools/resources/ics-recommended-practices","source":"psirt@sick.de","tags":["US Government Resource"]},{"url":"https://www.first.org/cvss/calculator/3.1","source":"psirt@sick.de","tags":["Not Applicable"]},{"url":"https://www.sick.com/.well-known/csaf/white/2025/sca-2025-0007.json","source":"psirt@sick.de","tags":["Vendor Advisory"]},{"url":"https://www.sick.com/.well-known/csaf/white/2025/sca-2025-0007.pdf","source":"psirt@sick.de","tags":["Vendor Advisory"]}]}}]}