Improper Access Control in the SICK ICR890-4 could allow an unauthenticated remote attacker to gather information about the system and download data via the REST API by accessing unauthenticated endpoints.
https://sick.com/.well-known/csaf/white/2023/sca-2023-0006.pdf
https://sick.com/.well-known/csaf/white/2023/sca-2023-0006.json