cvedb.io
CVE-2023-27309
MEDIUM · CVSS 5
EPSS exploitation probability: 0%
Published 2023-03-14T10:15:28.677 · Last modified 2026-06-17T05:44:45.500

Summary

A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.2). The client query handler of the affected application fails to check for proper permissions for specific write queries. This could allow an authenticated remote attacker to perform unauthorized actions.

Affected products

siemens — ruggedcom_crossbow

Does this affect you?

Add your gear to cvedb and we'll alert you only when siemens ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.