Security Advisory

CVE-2023-27309

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-03-14 09:31:57
Last updated 2025-02-27 15:00:08
Assigner siemens
State PUBLISHED

Description

A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.2). The client query handler of the affected application fails to check for proper permissions for specific write queries. This could allow an authenticated remote attacker to perform unauthorized actions.