CVE-2025-58589: Information Disclosure Through Stacktrace
When an error occurs in the application a full stacktrace is provided to the user. The stacktrace lists class and method names as well as other internal information. An attacker thus receives information about the technology used and the structure of the application.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-58589?
The severity of CVE-2025-58589 is critical due to the potential for information disclosure.
How do I fix CVE-2025-58589?
To fix CVE-2025-58589, you should implement error handling that does not expose stacktrace details to users.
What information can be disclosed via CVE-2025-58589?
CVE-2025-58589 can disclose internal class and method names, revealing the application's structure and technology.
Which software is affected by CVE-2025-58589?
CVE-2025-58589 affects SICK Baggage Analytics, SICK Logistic Diagnostic Analytics, SICK Package Analytics, and SICK Tire Analytics.
What is the risk of not addressing CVE-2025-58589?
Failing to address CVE-2025-58589 may allow attackers to gain insights into the system, potentially leading to further attacks.