CVE-2024-10773: Sick INSPECTOR61X Firmware
Critical severity, CVSS 9.0. EPSS: 0.6% chance of exploitation in the next 30 days.
The product is vulnerable to pass-the-hash attacks in combination with hardcoded credentials of hidden user levels. This means that an attacker can log in with the hidden user levels and gain full access to the device.
Affected products
- Sick INSPECTOR61X Firmware: before 5.0.0 (fixed in 5.0.0)
- Sick INSPECTOR62X Firmware: before 5.0.0 (fixed in 5.0.0)
- Sick TIM3XX: before 5.10.0 (fixed in 5.10.0)
- Sick AG Sick INSPECTORP61X: before 5.0.0 (fixed in 5.0.0)
- Sick AG Sick INSPECTORP62X: before 5.0.0 (fixed in 5.0.0)
- Sick AG TIM3XX: before 5.10.0 (fixed in 5.10.0)
Published 2024-12-06. Last modified 2026-06-17.