A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems allow any authenticated user to send arbitrary SQL commands to the SQL server. An attacker could use this vulnerability to compromise the whole database.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: siemens

Published: 2024-05-14T10:02:08.412Z

Updated: 2024-06-04T17:46:23.391Z

Reserved: 2024-02-28T16:38:00.192Z


Link: CVE-2024-27940

JSON object: View

cve-icon NVD Information

Status : Awaiting Analysis

Published: 2024-05-14T16:16:24.733

Modified: 2024-05-14T19:18:31.490


Link: CVE-2024-27940

JSON object: View

cve-icon Redhat Information

No data.

CWE