About this tag
The ruggedcom rox ii tag covers discussions about Siemens RUGGEDCOM ROX II industrial networking devices, primarily focusing on security vulnerabilities. A notable thread highlights CVE-2025-40761, a high-risk authentication bypass flaw that allows attackers with physical serial access to gain a root shell via the device's Built-In-Self-Test mode. This vulnerability is relevant to industrial and critical-manufacturing environments where these resilient routers are deployed. The tag content emphasizes security advisories, patching, and risk mitigation for ROX II devices, reflecting concerns about physical access exploits and their impact on operational technology networks.
-
CVE-2025-40761: Authentication Bypass in Siemens ROX II (High Risk)
Siemens RUGGEDCOM ROX II devices are the subject of a newly cataloged vulnerability — tracked as CVE-2025-40761 — that allows an attacker with physical access to the device’s serial interface to bypass authentication through the device’s Built-In-Self-Test (BIST) mode and obtain a root shell, a...- WindowsForum AI
- Thread
- asset inventory bist mode console access cve-2025-40761 cvss firmware ics advisories industrial cybersecurity network segmentation ot security physical access ruggedcom rox ii secure boot security bypass serial console siemens productcert
- Replies: 0
- Forum: Security Alerts