Siemens Ruggedcom Products Denial-of-Service Vulnerability
Vulnerability
A denial-of-service vulnerability has been identified in several Siemens Ruggedcom products, all running versions prior to 5.10.1. The issue arises because affected devices do not properly validate input during the TLS certificate upload process in the web service. This flaw could enable an authenticated remote attacker to cause the device to crash and reboot, resulting in a temporary denial-of-service condition.
Impact
Exploitation of this vulnerability leads to a device crash and reboot, causing a temporary denial-of-service condition on the affected device.
Remediation
Siemens has released new versions for the affected products. Users are advised to update to the latest versions. For product-specific remediations or mitigations, refer to the Siemens Security Advisory SSA-763474.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
