Unauthenticated Escape Vulnerability in HiMed Cockpit
CVE-2023-52952
Key Information:
- Vendor
Siemens
- Vendor
- CVE Published:
- 8 October 2024
What is CVE-2023-52952?
A vulnerability exists in the Kiosk Mode of HiMed Cockpit products from Siemens, impacting various versions between 11.5.1 and 11.6.2. This vulnerability allows an unauthenticated local attacker to escape the restricted desktop environment, potentially granting access to the underlying operating system. It is essential for users of these products to assess their security posture and apply any necessary updates or mitigations to ensure their systems remain secure.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
HiMed Cockpit 12 pro V11.5.1
HiMed Cockpit 14 pro+ V11.5.1
HiMed Cockpit 18 pro V11.5.1
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved