Siemens RUGGEDCOM ROX II
cpe:2.3:h:siemens:ruggedcom_rox_ii:*:*:*:*:*:*:*, +1 more
- < V2.17.0
A code injection vulnerability has been identified in the Siemens RUGGEDCOM ROX II family, affecting all versions prior to 2.17.0. The issue arises in the DHCP Server configuration file, where improper validation allows attackers to inject malicious code. Exploitation of this vulnerability could lead to the execution of a reverse shell, granting root access on the affected system.
Exploitation of this vulnerability allows for unauthorized code execution as the root user, potentially leading to complete control over the affected system.
Users are advised to update to version 2.17.0 or later. Additional guidance can be found on the Siemens support portal.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.