SSA-373591 PUBLISHED CVSS 8.100000381469727 HIGH

The latest update for RUGGEDCOM ROS devices fixes a buffer overflow vulnerability in the third party component that could allow an attacker with network access to an affected device to cause a remote code execution condition. Siemens has released updates for the affected products and recommends to update to the latest versions.

Risk Scores

CVSS v3.1
8.100000381469727
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:F/RL:O/RC:C

Affected Products

VendorProductVersions
RUGGEDCOM RS416Pv2 V5.X
RUGGEDCOM RS416P
RUGGEDCOM i800
RUGGEDCOM RMC8388 V5.X
RUGGEDCOM RS1600F
RUGGEDCOM i801
RUGGEDCOM RP110
RUGGEDCOM RS416
RUGGEDCOM RS400
RUGGEDCOM i802
RUGGEDCOM i803
RUGGEDCOM RS1600T
RUGGEDCOM RS416Pv2 V4.X
RUGGEDCOM M2100
RUGGEDCOM RMC30
RUGGEDCOM RS1600
RUGGEDCOM M2200
RUGGEDCOM RMC8388 V4.X
RUGGEDCOM M969
RUGGEDCOM RS401

Timeline

References

Open in Interactive Console →