CVE-2026-22912
MEDIUM WAF: Medium
CVSS 6.1
Published: 2026-01-15
CWE-601
Improper validation of a login parameter may allow attackers to redirect users to malicious websites after authentication. This can lead to various risk including stealing credentials from unsuspecting users.
WAF Coverage Analysis
Open Redirect
Medium WAF Coverage
OWASP: A01:2021 Broken Access Control
941xxx - XSS / XXE
Affected Software
| Vendor | Product | Version |
|---|---|---|
| sick | tdc-x401gl_firmware | up to 1.5.0 |
References
- sick.com (Vendor Advisory)
- www.cisa.gov (US Government Resource)
- www.first.org (Not Applicable)
- www.sick.com (Vendor Advisory)
- www.sick.com (Vendor Advisory)
- www.sick.com (Product)