ZeroHour

CVE-2024-27945

CVSS 3.1
7.2 high
EPSS
1%p70
Published
()
Modified
Description

A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The bulk import feature of the affected systems allow a privileged user to upload files to the root installation directory of the system. By replacing specific files, an attacker could tamper specific files or even achieve remote code execution.

Vendors
siemens
Products
ruggedcom crossbow
Weakness
CWE-73, CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.