TROYANOSYVIRUS
Back to CVEs

CVE-2026-27668

HIGH
8.8

Description

A vulnerability has been identified in RUGGEDCOM CROSSBOW Secure Access Manager Primary (SAM-P) (All versions < V5.8). User Administrators are allowed to administer groups they belong to. This could allow an authenticated User Administrator to escalate their own privileges and grant themselves access to any device group at any access level.

CVE Details

CVSS v3.1 Score8.8
SeverityHIGH
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack VectorNETWORK
ComplexityLOW
Privileges RequiredLOW
User InteractionNONE
Published4/14/2026
Last Modified4/14/2026
Sourcenvd
Honeypot Sightings0

Weaknesses (CWE)

CWE-266

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.