PT-2025-49830 · Ruggedcom · Ruggedcom Rox Ii

Published

2025-12-09

·

Updated

2025-12-14

·

CVE-2024-56839

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions RUGGEDCOM ROX II versions prior to 2.17.0
Description A code injection issue exists in RUGGEDCOM ROX II devices. This occurs when the device is utilizing VRF (Virtual Routing and Forwarding). Successful exploitation allows an attacker to execute arbitrary code with root privileges.
Recommendations Update to version 2.17.0 or later.

Fix

Special Elements Injection

Weakness Enumeration

Related Identifiers

BDU:2025-15629
CVE-2024-56839

Affected Products

Ruggedcom Rox Ii