A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems allow any authenticated user to send arbitrary SQL commands to the SQL server. An attacker could use this vulnerability to compromise the whole database.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: siemens
Published: 2024-05-14T10:02:08.412Z
Updated: 2024-06-04T17:46:23.391Z
Reserved: 2024-02-28T16:38:00.192Z
Link: CVE-2024-27940
JSON object: View
NVD Information
Status : Awaiting Analysis
Published: 2024-05-14T16:16:24.733
Modified: 2024-05-14T19:18:31.490
Link: CVE-2024-27940
JSON object: View
Redhat Information
No data.
CWE