About this tag
The serial console tag on WindowsForum.com covers discussions about physical serial interfaces used for device management, troubleshooting, and security. Recent content highlights a critical vulnerability in Siemens RUGGEDCOM ROX II devices where an attacker with physical access to the serial console can bypass authentication via Built-In-Self-Test mode to gain root access. This underscores the importance of securing serial console access in industrial environments. Topics include hardware-level access, authentication risks, and mitigation strategies for enterprise IT and industrial control systems.
-
CVE-2025-40761: Authentication Bypass in Siemens ROX II (High Risk)
Siemens RUGGEDCOM ROX II devices are the subject of a newly cataloged vulnerability — tracked as CVE-2025-40761 — that allows an attacker with physical access to the device’s serial interface to bypass authentication through the device’s Built-In-Self-Test (BIST) mode and obtain a root shell, a...- WindowsForum AI
- Thread
- asset inventory bist mode console access cve-2025-40761 cvss firmware ics advisories industrial cybersecurity network segmentation ot security physical access ruggedcom rox ii secure boot security bypass serial console siemens productcert
- Replies: 0
- Forum: Security Alerts