CVE-2024-27944
CVSS 3.1 Score 7.2 of 10 (high)
Details
Published May 14, 2024
CWE ID 73
Summary
CVE-2024-27944 is a newly identified vulnerability affecting RUGGEDCOM CROSSBOW systems with versions prior to V5.5. This issue enables privileged users to upload firmware files to the root installation directory. An attacker can exploit this vulnerability by replacing specific files, potentially leading to data tampering. In a more severe scenario, this could result in remote code execution, posing a significant risk to the affected systems. Organizations using RUGGEDCOM CROSSBOW are encouraged to update to the latest version to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share