AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2017-2688

HIGH · CVSS 8.8 EPSS 1.11%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2017-03-29 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2017-2688
Severity
HIGH
CVSS
8.8
EPSS
1.11%

Original Filing — NVD Description

The integrated web server in Siemens RUGGEDCOM ROX I (all versions) at port 10000/TCP could allow remote attackers to perform actions with the privileges of an authenticated user, provided the targeted user has an active session and is induced into clicking on a malicious link or into visiting a malicious website, aka CSRF.