CVE-2026-1627

An attacker may exploit the use of outdated and weak MAC algorithms in the device’s SSH service to potentially compromise the integrity of the SSH session, allowing manipulation of transmitted data if the attacker can interact with the network traffic.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:sick:lms1000_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:sick:lms1000:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:sick:mrs1000_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:sick:mrs1000:-:*:*:*:*:*:*:*

History

05 Mar 2026, 02:11

Type Values Removed Values Added
References () https://sick.com/psirt - () https://sick.com/psirt - Vendor Advisory
References () https://www.cisa.gov/resources-tools/resources/ics-recommended-practices - () https://www.cisa.gov/resources-tools/resources/ics-recommended-practices - US Government Resource
References () https://www.first.org/cvss/calculator/3.1 - () https://www.first.org/cvss/calculator/3.1 - Not Applicable
References () https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0005.json - () https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0005.json - Vendor Advisory
References () https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0005.pdf - () https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0005.pdf - Vendor Advisory
References () https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf - () https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf - Vendor Advisory
First Time Sick lms1000
Sick mrs1000
Sick
Sick lms1000 Firmware
Sick mrs1000 Firmware
CPE cpe:2.3:h:sick:mrs1000:-:*:*:*:*:*:*:*
cpe:2.3:h:sick:lms1000:-:*:*:*:*:*:*:*
cpe:2.3:o:sick:lms1000_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:sick:mrs1000_firmware:*:*:*:*:*:*:*:*

27 Feb 2026, 09:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-27 09:16

Updated : 2026-03-05 02:11


NVD link : CVE-2026-1627

Mitre link : CVE-2026-1627

CVE.ORG link : CVE-2026-1627


JSON object : View

Products Affected

sick

  • lms1000_firmware
  • lms1000
  • mrs1000_firmware
  • mrs1000
CWE
CWE-327

Use of a Broken or Risky Cryptographic Algorithm