CVE-2025-49197: Deprecated TLS version supported
Published Jun 12, 2025
·Updated
The application uses a weak password hash function, allowing an attacker to crack the weak password hash to gain access to an FTP user account.
Affected Software
1 affected component
SICK Media Server<1.5
Remediation
Information
It is strongly recommended to upgrade to the latest version.
Event History
Jun 12, 2025
CVE Published
via MITRE·02:23 PM
Data Sourced
via MITRE·02:23 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-49197?
The severity of CVE-2025-49197 is high with a CVSS score of 7.5.
2
How do I fix CVE-2025-49197?
To fix CVE-2025-49197, it is strongly recommended to upgrade to the latest version of the SICK Media Server.
3
What risks are associated with CVE-2025-49197?
CVE-2025-49197 poses risks such as the potential for unauthorized access through compromised FTP user accounts.
4
Is CVE-2025-49197 specific to any software?
Yes, CVE-2025-49197 specifically affects the SICK Media Server.
5
What type of vulnerability is CVE-2025-49197?
CVE-2025-49197 is classified as a weakness involving the use of a deprecated TLS version that supports weak password hash functions.