CVE-2026-22912

MEDIUM

Sick Tdc-x401gl Firmware < 1.5.0 - Open Redirect

Title source: rule
STIX 2.1

Description

Improper validation of a login parameter may allow attackers to redirect users to malicious websites after authentication. This can lead to various risk including stealing credentials from unsuspecting users.

Scores

CVSS v3 4.3
EPSS 0.0002
EPSS Percentile 6.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-601
Status published
Products (1)
sick/tdc-x401gl_firmware < 1.5.0
Published Jan 15, 2026
Tracked Since Feb 18, 2026