A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The bulk import feature of the affected systems allow a privileged user to upload files to the root installation directory of the system. By replacing specific files, an attacker could tamper specific files or even achieve remote code execution.
Metrics
Affected Vendors & Products
References
History
Thu, 06 Feb 2025 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-434 | |
| CPEs | cpe:2.3:a:siemens:ruggedcom_crossbow:*:*:*:*:*:*:*:* |
Status: PUBLISHED
Assigner: siemens
Published: 2024-05-14T10:02:14.365Z
Updated: 2024-08-02T00:41:55.904Z
Reserved: 2024-02-28T16:38:00.193Z
Link: CVE-2024-27945
Updated: 2024-05-14T13:08:17.390Z
Status : Analyzed
Published: 2024-05-14T16:16:32.503
Modified: 2025-02-06T18:14:57.147
Link: CVE-2024-27945
No data.