PT-2026-32609 · Siemens · Ruggedcom Crossbow Secure Access Manager Primary
Published
2026-04-14
·
Updated
2026-04-22
·
CVE-2026-27668
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
RUGGEDCOM CROSSBOW Secure Access Manager Primary (SAM-P) versions prior to 5.8
Description
User Administrators are permitted to administer groups to which they belong. This flaw allows an authenticated User Administrator to escalate their privileges and grant themselves access to any device group at any access level.
Recommendations
Update to version 5.8 or later.
Fix
LPE
Incorrect Privilege Assignment
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ruggedcom Crossbow Secure Access Manager Primary