CVE-2025-49186

The product does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame, making it susceptible to brute-force attacks.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:avaya:media_server:-:*:*:*:*:*:*:*
cpe:2.3:a:sick:baggage_analytics:*:*:*:*:*:*:*:*
cpe:2.3:a:sick:field_analytics:*:*:*:*:*:*:*:*
cpe:2.3:a:sick:logistic_diagnostic_analytics:*:*:*:*:*:*:*:*
cpe:2.3:a:sick:package_analytics:*:*:*:*:*:*:*:*
cpe:2.3:a:sick:tire_analytics:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-06-12 14:15

Updated : 2026-02-03 14:39


NVD link : CVE-2025-49186

Mitre link : CVE-2025-49186

CVE.ORG link : CVE-2025-49186


JSON object : View

Products Affected

sick

  • logistic_diagnostic_analytics
  • baggage_analytics
  • tire_analytics
  • field_analytics
  • package_analytics

avaya

  • media_server
CWE
CWE-307

Improper Restriction of Excessive Authentication Attempts