An attacker may exploit the use of outdated and weak MAC algorithms in the device’s SSH service to potentially compromise the integrity of the SSH session, allowing manipulation of transmitted data if the attacker can interact with the network traffic.
References
| Link | Resource |
|---|---|
| https://sick.com/psirt | Vendor Advisory |
| https://www.cisa.gov/resources-tools/resources/ics-recommended-practices | US Government Resource |
| https://www.first.org/cvss/calculator/3.1 | Not Applicable |
| https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0005.json | Vendor Advisory |
| https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0005.pdf | Vendor Advisory |
| https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf | Vendor Advisory |
Configurations
History
05 Mar 2026, 02:11
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://sick.com/psirt - Vendor Advisory | |
| References | () https://www.cisa.gov/resources-tools/resources/ics-recommended-practices - US Government Resource | |
| References | () https://www.first.org/cvss/calculator/3.1 - Not Applicable | |
| References | () https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0005.json - Vendor Advisory | |
| References | () https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0005.pdf - Vendor Advisory | |
| References | () https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf - Vendor Advisory | |
| First Time |
Sick lms1000
Sick mrs1000 Sick Sick lms1000 Firmware Sick mrs1000 Firmware |
|
| CPE | cpe:2.3:h:sick:mrs1000:-:*:*:*:*:*:*:* cpe:2.3:h:sick:lms1000:-:*:*:*:*:*:*:* cpe:2.3:o:sick:lms1000_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:sick:mrs1000_firmware:*:*:*:*:*:*:*:* |
27 Feb 2026, 09:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-02-27 09:16
Updated : 2026-03-05 02:11
NVD link : CVE-2026-1627
Mitre link : CVE-2026-1627
CVE.ORG link : CVE-2026-1627
JSON object : View
Products Affected
sick
- lms1000_firmware
- lms1000
- mrs1000_firmware
- mrs1000
CWE
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
