---
id: CVE-2025-58581
title: >-
  When an error occurs in the application a full stacktrace is  provided to the
  user
summary: >-
  When an error occurs in the application a full stacktrace is  provided to the
  user. The stacktrace lists class and method names as well as other internal
  information. An attacker can thus obtain information about the technology used
  and …
severity: medium
cvss: 4.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N'
cwe:
  - CWE-200
vendor: sick
product: enterprise_analytics
affected:
  - enterprise_analytics
published: '2025-10-06'
updated: '2026-10-09'
sourceUpdated: '2026-10-09T10:10:00.193'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-58581'
references:
  - url: 'https://sick.com/psirt'
    label: psirt@sick.de
  - url: 'https://www.cisa.gov/resources-tools/resources/ics-recommended-practices'
    label: psirt@sick.de
  - url: 'https://www.first.org/cvss/calculator/3.1'
    label: psirt@sick.de
  - url: 'https://www.sick.com/.well-known/csaf/white/2025/sca-2025-0010.json'
    label: psirt@sick.de
  - url: 'https://www.sick.com/.well-known/csaf/white/2025/sca-2025-0010.pdf'
    label: psirt@sick.de
  - url: >-
      https://www.sick.com/media/docs/9/19/719/special_information_sick_operating_guidelines_cybersecurity_by_sick_en_im0106719.pdf
    label: psirt@sick.de
tags:
  - nvd
epss: 0.00333
epssPercentile: 0.24461
ingestedAt: '2026-10-09T12:53:28.785Z'
---

## Overview

When an error occurs in the application a full stacktrace is  provided to the user. The stacktrace lists class and method names as well as other internal information. An attacker can thus obtain information about the technology used and the structure of the application.

## Affected

- `enterprise_analytics`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
