CVE-2023-37373: High severity siemens ruggedcom crossbow vulnerability
Published Aug 8, 2023
·Updated
A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.4). The affected applications accept unauthenticated file write messages. An unauthenticated remote attacker could write arbitrary files to the affected application's file system.
Affected Software
1 affected component
Siemens Ruggedcom Crossbow<5.4
Event History
Aug 8, 2023
CVE Published
via MITRE·09:20 AM
Data Sourced
via MITRE·09:20 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this RUGGEDCOM CROSSBOW vulnerability?
The vulnerability ID for this RUGGEDCOM CROSSBOW vulnerability is CVE-2023-37373.
2
What is the severity of CVE-2023-37373?
The severity of CVE-2023-37373 is high with a score of 7.5.
3
What is the affected software for CVE-2023-37373?
The affected software for CVE-2023-37373 is Siemens Ruggedcom Crossbow (All versions < V5.4).
4
How does CVE-2023-37373 affect the affected applications?
CVE-2023-37373 allows unauthenticated remote attackers to write arbitrary files to the affected application's file system.
5
Is there a fix available for CVE-2023-37373?
Yes, updating to version V5.4 or later of Siemens Ruggedcom Crossbow will fix CVE-2023-37373.