Siemens
Siemens Ruggedcom Crossbow: vulnerabilidades y CVE
Siemens Ruggedcom Crossbow tiene 17 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE17
Últimos 12 meses0
Críticas2
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-6965 | Alta (7.2) | 73% | — | 15 jul 2025 | There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corruption issue. We recommend upgrading to… |
| CVE-2024-27947 | Media (5.3) | 0.57% | — | 14 may 2024 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems could allow log messages to be forwarded to a specific client under certain circumstances. An attacker could leverage… |
| CVE-2024-27946 | Media (6.5) | 0.91% | — | 14 may 2024 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). Downloading files overwrites files with the same name in the installation directory of the affected systems. The filename for the target… |
| CVE-2024-27945 | Alta (7.2) | 1.4% | — | 14 may 2024 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The bulk import feature of the affected systems allow a privileged user to upload files to the root installation directory of the system.… |
| CVE-2024-27944 | Alta (7.2) | 1.4% | — | 14 may 2024 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems allow a privileged user to upload firmware files to the root installation directory of the system. By replacing… |
| CVE-2024-27943 | Alta (7.2) | 1.3% | — | 14 may 2024 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems allow a privileged user to upload generic files to the root installation directory of the system. By replacing… |
| CVE-2024-27942 | Alta (7.5) | 0.69% | — | 14 may 2024 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems allow any unauthenticated client to disconnect any active user from the server. An attacker could use this… |
| CVE-2024-27941 | Alta (8.8) | 0.78% | — | 14 may 2024 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected client systems do not properly sanitize input data before sending it to the SQL server. An attacker could use this… |
| CVE-2024-27940 | Alta (8.8) | 0.78% | — | 14 may 2024 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems allow any authenticated user to send arbitrary SQL commands to the SQL server. An attacker could use this… |
| CVE-2024-27939 | Crítica (9.8) | 0.79% | — | 14 may 2024 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems allow the upload of arbitrary files of any unauthenticated user. An attacker could leverage this vulnerability and… |
| CVE-2023-37373 | Alta (7.5) | 0.54% | — | 8 ago 2023 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.4). The affected applications accept unauthenticated file write messages. An unauthenticated remote attacker could write arbitrary files to… |
| CVE-2023-37372 | Crítica (9.8) | 0.94% | — | 8 ago 2023 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.4). The affected applications is vulnerable to SQL injection. This could allow an unauthenticated remote attackers to execute arbitrary SQL… |
| CVE-2023-27411 | Alta (8.8) | 0.80% | — | 8 ago 2023 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.4). The affected applications is vulnerable to SQL injection. This could allow an authenticated remote attackers to execute arbitrary SQL… |
| CVE-2023-27463 | Alta (8.8) | 0.80% | — | 14 mar 2023 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.3). The audit log form of affected applications is vulnerable to SQL injection. This could allow authenticated remote attackers to execute… |
| CVE-2023-27462 | Media (4.3) | 0.52% | — | 14 mar 2023 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.3). The client query handler of the affected application fails to check for proper permissions for specific read queries. This could allow… |
| CVE-2023-27310 | Alta (8.8) | 0.63% | — | 14 mar 2023 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.2). The client query handler of the affected application fails to check for proper permissions when assigning groups to user accounts. This… |
| CVE-2023-27309 | Alta (8.8) | 0.48% | — | 14 mar 2023 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.2). The client query handler of the affected application fails to check for proper permissions for specific write queries. This could allow an… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.