Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r593-vh4q-g7mv

Опубликовано: 14 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.7
CVSS3: 8.8

Описание

A vulnerability has been identified in RUGGEDCOM CROSSBOW Secure Access Manager Primary (SAM-P) (All versions < V5.8). User Administrators are allowed to administer groups they belong to. This could allow an authenticated User Administrator to escalate their own privileges and grant themselves access to any device group at any access level.

A vulnerability has been identified in RUGGEDCOM CROSSBOW Secure Access Manager Primary (SAM-P) (All versions < V5.8). User Administrators are allowed to administer groups they belong to. This could allow an authenticated User Administrator to escalate their own privileges and grant themselves access to any device group at any access level.

EPSS

Процентиль: 17%
0.00259
Низкий

8.7 High

CVSS4

8.8 High

CVSS3

Дефекты

CWE-266

Связанные уязвимости

CVSS3: 8.8
nvd
4 месяца назад

A vulnerability has been identified in RUGGEDCOM CROSSBOW Secure Access Manager Primary (SAM-P) (All versions < V5.8). User Administrators are allowed to administer groups they belong to. This could allow an authenticated User Administrator to escalate their own privileges and grant themselves access to any device group at any access level.

CVSS3: 8.8
fstec
4 месяца назад

Уязвимость системы безопасного управления доступом к IED Siemens RUGGEDCOM CROSSBOW (SAM-P), связанная с недостатками разграничения доступа, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 17%
0.00259
Низкий

8.7 High

CVSS4

8.8 High

CVSS3

Дефекты

CWE-266