Web-Based Code Injection Vulnerability in RUGGEDCOM Devices by Siemens
CVE-2022-34663
8HIGH
Key Information:
- Vendor
Siemens
- Vendor
- CVE Published:
- 12 July 2022
What is CVE-2022-34663?
A web-based vulnerability has been discovered in various RUGGEDCOM devices, allowing attackers to perform code injection via the console. This issue can lead to unauthorized code execution, potentially compromising the functionality of legitimate user sessions accessing affected devices. Remediation is necessary to prevent malicious attacks that exploit this vulnerability, highlighting the need for stringent cybersecurity measures.
Affected Version(s)
RUGGEDCOM i800 All versions < V4.3.8
RUGGEDCOM i800NC All versions < V4.3.8
RUGGEDCOM i801 All versions < V4.3.8