CVE-2023-27309

Publication date

2023-03-14 09:31:57

Family

siemens

State

PUBLISHED

Description

A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.2). The client query handler of the affected application fails to check for proper permissions for specific write queries. This could allow an authenticated remote attacker to perform unauthorized actions.