📦 Ruggedcom Crossbow

by Siemens

🔍 What is Ruggedcom Crossbow?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-27939

CRITICAL CVSS 9.8 May 14, 2024

CVE-2024-27939 is a critical vulnerability in Siemens RUGGEDCOM CROSSBOW industrial network management software that allows unauthenticated attackers to upload arbitrary files, leading to remote code ...

CVE-2023-37372

CRITICAL CVSS 9.8 Aug 8, 2023

This vulnerability allows unauthenticated remote attackers to execute arbitrary SQL queries on RUGGEDCOM CROSSBOW server databases. It affects all versions before V5.4, potentially exposing sensitive ...

CVE-2024-27945

HIGH CVSS 7.2 May 14, 2024

This vulnerability in RUGGEDCOM CROSSBOW allows privileged users to upload files to the root installation directory via the bulk import feature. Attackers could replace specific files to tamper with s...

CVE-2024-27943

HIGH CVSS 7.2 May 14, 2024

This vulnerability in RUGGEDCOM CROSSBOW allows privileged users to upload arbitrary files to the system's root installation directory. By replacing specific files, attackers can tamper with system fu...

CVE-2024-27941

HIGH CVSS 8.8 May 14, 2024

This SQL injection vulnerability in RUGGEDCOM CROSSBOW allows attackers to execute arbitrary SQL commands against the database. All versions before V5.5 are affected, potentially compromising the enti...

CVE-2023-27463

HIGH CVSS 8.8 Mar 14, 2023

This SQL injection vulnerability in RUGGEDCOM CROSSBOW allows authenticated remote attackers to execute arbitrary SQL queries on the server database. It affects all versions before V5.3 of the softwar...

CVE-2024-27947

MEDIUM CVSS 5.3 May 14, 2024

A vulnerability in RUGGEDCOM CROSSBOW allows log messages to be forwarded to a specific client under certain circumstances. Attackers could exploit this to redirect sensitive log data to a compromised...