CVE-2024-27942

A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems allow any unauthenticated client to disconnect any active user from the server. An attacker could use this vulnerability to prevent any user to perform actions in the system, causing a denial of service situation.
Configurations

No configuration.

History

21 Nov 2024, 09:05

Type Values Removed Values Added
References () https://cert-portal.siemens.com/productcert/html/ssa-916916.html - () https://cert-portal.siemens.com/productcert/html/ssa-916916.html -
Summary
  • (es) Se ha identificado una vulnerabilidad en RUGGEDCOM CROSSBOW (Todas las versiones &lt; V5.5). Los sistemas afectados permiten que cualquier cliente no autenticado desconecte a cualquier usuario activo del servidor. Un atacante podría utilizar esta vulnerabilidad para impedir que cualquier usuario realice acciones en el sistema, provocando una situación de denegación de servicio.

14 May 2024, 16:16

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-14 16:16

Updated : 2024-11-21 09:05


NVD link : CVE-2024-27942

Mitre link : CVE-2024-27942

CVE.ORG link : CVE-2024-27942


JSON object : View

Products Affected

No product.

CWE
CWE-306

Missing Authentication for Critical Function