A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems allow a privileged user to upload firmware files to the root installation directory of the system. By replacing specific files, an attacker could tamper specific files or even achieve remote code execution.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-25118 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems allow a privileged user to upload firmware files to the root installation directory of the system. By replacing specific files, an attacker could tamper specific files or even achieve remote code execution. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 06 Feb 2025 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-434 | |
| CPEs | cpe:2.3:a:siemens:ruggedcom_crossbow:*:*:*:*:*:*:*:* |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: siemens
Published:
Updated: 2024-08-02T00:41:55.820Z
Reserved: 2024-02-28T16:38:00.193Z
Link: CVE-2024-27944
Updated: 2024-05-14T13:11:50.632Z
Status : Analyzed
Published: 2024-05-14T16:16:31.260
Modified: 2025-02-06T18:15:10.320
Link: CVE-2024-27944
No data.
OpenCVE Enrichment
No data.
EUVD