Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-27946


A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). Downloading files overwrites files with the same name in the installation directory of the affected systems. The filename for the target file can be specified, thus arbitrary files can be overwritten by an attacker with the required privileges.


Published

2024-05-14T16:16:33.783

Last Modified

2025-02-06T18:14:26.713

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-22
  • Type: Primary
    CWE-22

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application siemens ruggedcom_crossbow < 5.5 Yes

References