Due to missing input validation during one step of the firmware update process, the product
is vulnerable to remote code execution. With network access and the user level ”Service”, an attacker
can execute arbitrary system commands in the root user’s contexts.
CVE ID: CVE-2024-10771
CVSS Base Severity: HIGH
CVSS Base Score: 8.8
Vendor: SICK AG
Product: SICK InspectorP61x
EPSS Score: 0.04% (probability of being exploited)
EPSS Percentile: 12.38% (scored less or equal to compared to others)
EPSS Date: 2025-02-03 (when was this score calculated)