Siemens RUGGEDCOM ROX II
cpe:2.3:h:siemens:ruggedcom_rox_ii:*:*:*:*:*:*:*, +1 more
- < V2.17.0
A code injection vulnerability has been identified in the Siemens RUGGEDCOM ROX II family, affecting all versions prior to 2.17.0. Under certain conditions, the IPsec implementation may allow an attacker to inject code, which could be executed arbitrarily with root privileges on the affected device.
Exploitation of this vulnerability allows for arbitrary code execution as the root user on the affected device.
Users are advised to update to version 2.17.0 or later. Additional guidance can be found on the Siemens support website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.