CVE-2025-49190: Server-Side Request Forgery
Published Jun 12, 2025
·Updated
The application is vulnerable to Server-Side Request Forgery (SSRF). An endpoint can be used to send server internal requests to other ports.
Affected Software
1 affected component
SICK Field Analytics
Event History
Jun 12, 2025
CVE Published
via MITRE·02:06 PM
Data Sourced
via MITRE·02:06 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Oct 25, 58049
Event
via NVD·12:37 AM
Frequently Asked Questions
1
What is the severity of CVE-2025-49190?
The severity of CVE-2025-49190 is rated medium with a score of 5.8.
2
How does CVE-2025-49190 affect systems?
CVE-2025-49190 allows for Server-Side Request Forgery that can lead to internal server requests to other ports.
3
What systems are impacted by CVE-2025-49190?
CVE-2025-49190 specifically affects SICK Field Analytics software.
4
How do I fix CVE-2025-49190?
To fix CVE-2025-49190, apply the latest security updates from the vendor related to SSRF vulnerabilities.
5
What risk level is associated with CVE-2025-49190?
CVE-2025-49190 is associated with a risk level of 21.