CVE detail
CVE-2026-22911
Firmware update files may expose password hashes for system accounts, which could allow a remote attacker to recover credentials and gain unauthorized access to the device.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 19.5 · diversity 16.5 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
6 source links · newest first
No excerpt available.
Vendor Advisorywww.sick.comJan 15, 2026, 1:16 PMNo excerpt available.
Vendor Advisorywww.sick.comJan 15, 2026, 1:16 PMNo excerpt available.
Vendor Advisorywww.sick.comJan 15, 2026, 1:16 PM- https://www.first.org/cvss/calculator/3.1www.first.org
No excerpt available.
Not Applicablewww.first.orgJan 15, 2026, 1:16 PM No excerpt available.
Mitigationwww.cisa.govJan 15, 2026, 1:16 PM- https://sick.com/psirtsick.com
No excerpt available.
Vendor Advisorysick.comJan 15, 2026, 1:16 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-42869CVSS 10.0 · Critical
SOCFortress CoPilot focuses on providing a single pane of glass for all your security operations needs. Prior to 0.1.57, SOCFortress CoPilot ships a hardcoded JWT signing secret a…
- CVE-2026-29128CVSS 8.6 · High
IDC SFX2100 Satellite Receiver firmware ships with multiple daemon configuration files for routing components (e.g., zebra, bgpd, ospfd, and ripd) that are owned by root but world…
- CVE-2026-27167CVSS 0.0 · Unrated
Gradio is an open-source Python package designed for quick prototyping. Starting in version 4.16.0 and prior to version 6.6.0, Gradio applications running outside of Hugging Face…
- CVE-2025-34196CVSS 9.3 · Critical
Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 25.1.102 and Application prior to 25.1.1413 (Windows client deployments) contain a hardcoded private…
- CVE-2025-55739CVSS 5.1 · Medium
api is a module for FreePBX@, which is an open source GUI that controls and manages Asterisk© (PBX). In versions lower than 15.0.13, 16.0.2 through 16.0.14, 17.0.1 and 17.0.2, the…
- CVE-2025-25570CVSS 9.8 · Critical
Vue Vben Admin 2.10.1 allows unauthorized login to the backend due to an issue with hardcoded credentials.