Ruggedcom Crossbow
Vendor:
First CVE: Mar 14, 2023 · Active for 3 years
17
Total CVEs
More Total CVEs than 94% of tracked products
5.7
Avg CVEs / Year
Higher CVE frequency than 91% of tracked products
7.8
Avg CVSS
Higher Avg CVSS than 70% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Ruggedcom Crossbow over time
Volume of CVEsAvg CVSS Base Score
First CVE
Mar 14, 2023
3 years ago
Most Recent CVE
Jul 15, 2025
378 days ago
CVE Severity & Scoring
Ruggedcom Crossbow17 CVEs
18%
71%
12%
All CVEs353,173 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network17 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low17 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None17 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low7 (41.2%)
High4 (23.5%)
None6 (35.3%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (17 CVEs).
17 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-6965HIGH There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corrupti | Jul 15, 2025 | 7.7 | 79 | NO | YES |
CVE-2023-37372CRITICAL A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.4). The affected applications is vulnerable to SQL injection. This could allow an unauthenticated remot | Aug 8, 2023 | 9.8 | 27 | NO | NO |
CVE-2023-27463HIGH A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.3). The audit log form of affected applications is vulnerable to SQL injection. This could allow authen | Mar 14, 2023 | 8.8 | 26 | NO | NO |
CVE-2023-27310HIGH A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.2). The client query handler of the affected application fails to check for proper permissions when ass | Mar 14, 2023 | 8.8 | 26 | NO | NO |
CVE-2023-27309HIGH A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.2). The client query handler of the affected application fails to check for proper permissions for spec | Mar 14, 2023 | 8.8 | 26 | NO | NO |
CVE-2024-27939CRITICAL A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems allow the upload of arbitrary files of any unauthenticated user. An attacker c | May 14, 2024 | 9.8 | 25 | NO | NO |
CVE-2024-27941HIGH A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected client systems do not properly sanitize input data before sending it to the SQL server | May 14, 2024 | 8.8 | 23 | NO | NO |
CVE-2024-27940HIGH A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems allow any authenticated user to send arbitrary SQL commands to the SQL server. | May 14, 2024 | 8.8 | 23 | NO | NO |
CVE-2023-37373HIGH A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.4). The affected applications accept unauthenticated file write messages. An unauthenticated remote att | Aug 8, 2023 | 7.5 | 23 | NO | NO |
CVE-2023-27411HIGH A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.4). The affected applications is vulnerable to SQL injection. This could allow an authenticated remote | Aug 8, 2023 | 8.8 | 23 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (17 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
5.9% of CVEs· 86th percentile
Social Chatter
Signals from CVEs in this product scope (17 CVEs).
Media Mentions
Signals from CVEs in this product scope (17 CVEs).
Top CNAs Publishing CVEs For Ruggedcom Crossbow
Top CWEs
Versions
No cataloged versions.