CVE-2023-37372: Siemens Ruggedcom Crossbow

Critical severity, CVSS 9.8. EPSS: 0.9% chance of exploitation in the next 30 days.

A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.4). The affected applications is vulnerable to SQL injection. This could allow an unauthenticated remote attackers to execute arbitrary SQL queries on the server database.

Affected products

  • Siemens Ruggedcom Crossbow: before 5.4 (fixed in 5.4)

Published 2023-08-08. Last modified 2026-06-17.