CVE-2026-22915

MEDIUM

Product <Version> - Info Disclosure

Title source: llm
STIX 2.1

Description

An attacker with low privileges may be able to read files from specific directories on the device, potentially exposing sensitive information.

Scores

CVSS v3 4.3
EPSS 0.0002
EPSS Percentile 6.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-497
Status published
Products (1)
sick/tdc-x401gl_firmware
Published Jan 15, 2026
Tracked Since Feb 18, 2026