A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.3). The audit log form of affected applications is vulnerable to SQL injection. This could allow authenticated remote attackers to execute arbitrary SQL queries on the server database.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-31239 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.3). The audit log form of affected applications is vulnerable to SQL injection. This could allow authenticated remote attackers to execute arbitrary SQL queries on the server database. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 04 Mar 2025 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: siemens
Published:
Updated: 2025-02-27T18:59:38.671Z
Reserved: 2023-03-01T17:29:28.824Z
Link: CVE-2023-27463
Updated: 2024-08-02T12:09:43.475Z
Status : Modified
Published: 2023-03-14T10:15:29.757
Modified: 2024-11-21T07:52:57.663
Link: CVE-2023-27463
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD