Siemens RUGGEDCOM RST2428P Browser Cache Vulnerability Allowing Access to Sensitive Data

Vulnerability

A vulnerability exists in Siemens RUGGEDCOM RST2428P (6GK6242-6PA00) versions prior to 4.0. The issue arises because the application stores sensitive information in the browser cache when an authenticated user makes certain configuration changes. This behavior could enable an authenticated attacker to retrieve sensitive data from the browser cache.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive information stored in the browser cache.

Remediation

Users are advised to update to version 4.0 or later. Additional information can be found on the Siemens Support page.

Added: Jun 2, 2026, 2:21 PM
Updated: Jun 2, 2026, 2:21 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.8
exploitability
3.3
remediation
0.0
relevance
9.8
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.