CVE-2025-58582: Sick Enterprise Analytics
High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.
If a user tries to login but the provided credentials are incorrect a log is created. The data for this POST requests is not validated and it’s possible to send giant payloads which are then logged.
Affected products
- Sick Enterprise Analytics: any version
Published 2025-10-06. Last modified 2026-10-09.