Web: https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-27462

March 14, 2023, 10:15 a.m. |

National Vulnerability Database web.nvd.nist.gov

A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.3). The client query handler of the affected application fails to check for proper permissions for specific read queries. This could allow authenticated remote attackers to access data they are not authorized for.

cve

Senior Cloud Security Operations Engineer - AWS

@ MUFG Investor Services | London, United Kingdom

Cybersecurity Engineer (ForgeRock openAM, SAML, OpenID, OAuth)

@ Visa | Bengaluru, India

Software Engineer, Product Security

@ Block | San Francisco, CA, United States

Security Internship - Application Security Intern

@ Highspot | Vancouver, BC

Cloud Security Engineer

@ XOR Security | Washington, DC

Cyber Security Consultant Intern - ETAS

@ Bosch Group | Plymouth, MI, United States

Senior Vulnerability & Security Configuration Engineer

@ ServiceNow | Atlanta, GA, United States

Insider Risk Monitoring & Triage Security Engineer

@ Block | San Francisco, CA, United States

Senior Cybersecurity Engineer | Sydney

@ Datacom | Sydney, New South Wales, Australia

Zero Trust Architect

@ XOR Security | Washington, DC

Sr. Technical Consultant - Sydney

@ Elastic | Sydney, Australia

Lead, Compliance

@ Gemini | New York City; Seattle, Washington; San Francisco, California