PT-2025-25324 · Sick Ag+1 · Sick Media Server+1

Published

2025-06-12

·

Updated

2025-06-12

·

CVE-2025-49198

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions The product name cannot be determined.
Description The issue concerns authorization tokens with poor randomness quality. An attacker may guess the token of an active user by computing plausible tokens.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Use of Insufficiently Random Values

Weakness Enumeration

Related Identifiers

CVE-2025-49198

Affected Products

Sick Media Server
Mediaserver