Unrated severityNVD Advisory· Published Mar 14, 2023· Updated Feb 27, 2025
CVE-2023-27310
CVE-2023-27310
Description
A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.2). The client query handler of the affected application fails to check for proper permissions when assigning groups to user accounts. This could allow an authenticated remote attacker to assign administrative groups to otherwise non-privileged user accounts.
Affected products
2<5.2+ 1 more
- (no CPE)range: <5.2
- (no CPE)range: All versions < V5.2
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.