CVE-2026-27668
HIGH SEVERITYCVSS Score & Metrics
Base Score
8.8 / 10
Vector String
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Description
A vulnerability has been identified in RUGGEDCOM CROSSBOW Secure Access Manager Primary (SAM-P) (All versions < V5.8). User Administrators are allowed to administer groups they belong to. This could allow an authenticated User Administrator to escalate their own privileges and grant themselves access to any device group at any access level.
Vulnerability Details
Published Date
Last Modified
CWE ID
CWE-266
Source
NVD
Vendor
Siemens
Product
RUGGEDCOM CROSSBOW Secure Access Manager Primary (SAM-P)
Discussion (0)
Add Comment
No comments yet. Be the first!