CVE-2019-12262: Belden Garrettcom Magnum DX940E Firmware

Critical severity, CVSS 9.8. EPSS: 4.1% chance of exploitation in the next 30 days.

Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and 7 has Incorrect Access Control in the RARP client component. IPNET security vulnerability: Handling of unsolicited Reverse ARP replies (Logical Flaw).

Affected products

  • Belden Garrettcom Magnum DX940E Firmware: up to and including 1.0.1_y7
  • Belden Hirschmann Hios: up to and including 07.0.07; up to and including 07.5.01; up to and including 07.2.04; up to and including 05.3.06
  • Siemens Ruggedcom WIN7000 Firmware: before bs5.2.461.17 (fixed in bs5.2.461.17)
  • Siemens Ruggedcom WIN7018 Firmware: before bs5.2.461.17 (fixed in bs5.2.461.17)
  • Siemens Ruggedcom WIN7025 Firmware: before bs5.2.461.17 (fixed in bs5.2.461.17)
  • Siemens Ruggedcom WIN7200 Firmware: before bs5.2.461.17 (fixed in bs5.2.461.17)
  • Windriver Vxworks: version 6.6 only; version 6.7 only; version 6.8 only; version 6.9 only; version 7.0 only

Published 2019-08-14. Last modified 2026-06-17.