Aller au contenu

Fiche vulnérabilité

CVE-2024-27940 : faille élevée siemens ruggedcom crossbow (CVSS 8.8)

Description

A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems allow any authenticated user to send arbitrary SQL commands to the SQL server. An attacker could use this vulnerability to compromise the whole database.

En bref

Sévérité
Élevée (CVSS 8.8)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
14 mai 2024
Dernière mise à jour
17 juin 2026

Produits concernés

  • siemens ruggedcom crossbow

Références

Rechercher une autre vulnérabilité dans la base CVE