You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve-2025-40948
About this tag
CVE-2025-40948 is an authenticated remote file-read vulnerability in the JSON-RPC interface of Siemens Ruggedcom ROX devices, disclosed by Siemens and CISA in May 2026. The flaw affects multiple MX5000, RX1400, RX1500, RX1510, RX1524, RX1536, and RX5000 models running ROX versions before 2.17.1. It allows a logged-in remote user to read arbitrary operating-system files with root privileges, posing a significant risk in industrial networks for power, transport, and factory environments. Discussions on WindowsForum highlight that while not a wormable vulnerability, it represents a quiet breach of trust in the management plane, where real leverage often exists in critical infrastructure.
Siemens and CISA disclosed on May 12 and May 14, 2026, respectively, that Ruggedcom ROX devices before version 2.17.1 contain CVE-2025-40948, an authenticated remote file-read vulnerability in the web server’s JSON-RPC interface affecting multiple MX5000, RX1400, RX1500, RX1510, RX1524, RX1536...