CVE-2026-22916

An attacker with low privileges may be able to trigger critical system functions such as reboot or factory reset without proper restrictions, potentially leading to service disruption or loss of configuration.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:sick:tdc-x401gl_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:sick:tdc-x401gl:-:*:*:*:*:*:*:*

History

23 Jan 2026, 15:13

Type Values Removed Values Added
CPE cpe:2.3:o:sick:tdc-x401gl_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:sick:tdc-x401gl:-:*:*:*:*:*:*:*
First Time Sick tdc-x401gl
Sick tdc-x401gl Firmware
Sick
CWE NVD-CWE-Other
References () https://sick.com/psirt - () https://sick.com/psirt - Vendor Advisory
References () https://www.cisa.gov/resources-tools/resources/ics-recommended-practices - () https://www.cisa.gov/resources-tools/resources/ics-recommended-practices - US Government Resource
References () https://www.first.org/cvss/calculator/3.1 - () https://www.first.org/cvss/calculator/3.1 - Not Applicable
References () https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0001.json - () https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0001.json - Vendor Advisory
References () https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0001.pdf - () https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0001.pdf - Vendor Advisory
References () https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf - () https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf - Product

15 Jan 2026, 13:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-15 13:16

Updated : 2026-01-23 15:13


NVD link : CVE-2026-22916

Mitre link : CVE-2026-22916

CVE.ORG link : CVE-2026-22916


JSON object : View

Products Affected

sick

  • tdc-x401gl_firmware
  • tdc-x401gl
CWE
CWE-266

Incorrect Privilege Assignment

NVD-CWE-Other