siemens crossbow

About this tag
The siemens crossbow tag covers security advisories and patch guidance for Siemens RUGGEDCOM CROSSBOW products, including the Station Access Controller (SAC) and Secure Access Manager Primary (SAM-P). Recent threads highlight critical vulnerabilities such as CVE-2025-6965, which allows arbitrary code execution and denial-of-service in SAC versions before 5.8, and CVE-2026-27668, a privilege escalation flaw in SAM-P versions before 5.8. Both advisories recommend updating to V5.8 or later. Discussions focus on industrial cybersecurity, CISA coordination, and mitigation steps for operators of Siemens industrial control systems.
  1. Siemens RUGGEDCOM CROSSBOW CVE-2025-6965: Patch to V5.8 to Stop Code Execution Risk

    Siemens’ latest industrial cybersecurity advisory for RUGGEDCOM CROSSBOW Station Access Controller (SAC) is a reminder that access-management software can be just as dangerous to critical operations as the field devices it protects. The flaw, tracked as CVE-2025-6965, affects RUGGEDCOM CROSSBOW...
  2. CVE-2026-27668: Patch Siemens RUGGEDCOM CROSSBOW SAM-P to V5.8+

    Siemens has issued a fresh industrial cybersecurity warning for RUGGEDCOM CROSSBOW Secure Access Manager Primary (SAM-P), and the headline is straightforward: an authenticated user with the User Administrator role may be able to climb into broader privileges than intended. The issue, tracked as...