Known vulnerabilities in RUGGEDCOM ROX II
Vendor:
Siemens
Software:
RUGGEDCOM ROX II
Software CPE:
cpe:2.3:h:siemens:ruggedcom_rox_ii:*:*:*:*:*:*:*:*
Website:
https://www.siemens.com/
Total vulnerabilities:
6
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU119810 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') CVE-2024-56840 |
CWE-74 | Low | 2.17.0 | 10.12.2025 |
SB20251210186 |
||
| #VU119809 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') CVE-2024-56839 |
CWE-74 | Low | 2.17.0 | 10.12.2025 |
SB20251210186 |
||
| #VU119808 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') CVE-2024-56838 |
CWE-74 | Low | 2.17.0 | 10.12.2025 |
SB20251210186 |
||
| #VU119807 - Command injection CVE-2024-56837 |
CWE-77 | Low | 2.17.0 | 10.12.2025 |
SB20251210186 |
||
| #VU119806 - Command injection CVE-2024-56836 |
CWE-77 | Medium | 2.17.0 | 10.12.2025 |
SB20251210186 |
||
| #VU119805 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') CVE-2024-56835 |
CWE-74 | Medium | 2.17.0 | 10.12.2025 |
SB20251210186 |