CVE-2025-58579: Username Disclosure Through Missing Authentication
Published Oct 6, 2025
·Updated
Due to a lack of authentication, it is possible for an unauthenticated user to request data from this endpoint, making the application vulnerable for user enumeration.
Affected Software
5 affected components
SICK Baggage Analytics
SICK Enterprise Analytics
SICK Logistic Diagnostic Analytics
SICK Package Analytics
SICK Tire Analytics
Remediation
Information
For Logistic Analytics Products: It is strongly recommended to update the product to version 4.6.3.
Event History
Oct 6, 2025
CVE Published
via MITRE·07:09 AM
Data Sourced
via MITRE·07:09 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·07:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-58579?
CVE-2025-58579 is classified as a high severity vulnerability due to the potential for user enumeration.
2
How do I fix CVE-2025-58579?
To fix CVE-2025-58579, implement proper authentication checks on the endpoint to prevent unauthenticated access.
3
What type of vulnerability is CVE-2025-58579?
CVE-2025-58579 is a vulnerability related to username disclosure due to missing authentication.
4
Which software is affected by CVE-2025-58579?
CVE-2025-58579 affects various SICK software products including Baggage Analytics and Enterprise Analytics.
5
How does CVE-2025-58579 impact security?
CVE-2025-58579 can lead to unauthorized access to user information, undermining the application's security.