CVE-2025-40947Patch(siemens / ruggedcom_rox_mx5000)

LOWCVSS 7.7 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch siemens ruggedcom_rox_mx5000 systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.1), RUGGEDCOM ROX MX5000RE (All versions < V2.17.1), RUGGEDCOM ROX RX1400 (All versions < V2.17.1), RUGGEDCOM ROX RX1500 (All versions < V2.17.1), RUGGEDCOM ROX RX1501 (All versions < V2.17.1), RUGGEDCOM ROX RX1510 (All versions < V2.17.1), RUGGEDCOM ROX RX1511 (All versions < V2.17.1), RUGGEDCOM ROX RX1512 (All versions < V2.17.1), RUGGEDCOM ROX RX1524 (All versions < V2.17.1), RUGGEDCOM ROX RX1536 (All versions < V2.17.1), RUGGEDCOM ROX RX5000 (All versions < V2.17.1). Affected devices do not properly sanitize user-supplied input during the feature key installation process. This could allow an authenticated remote attacker to inject arbitrary commands, resulting in remote code execution with root privileges on the underlying operating system.

2.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-78

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • ruggedcom_rox_mx5000
  • ruggedcom_rox_mx5000_firmware
  • ruggedcom_rox_mx5000re
  • ruggedcom_rox_mx5000re_firmware

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • General: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-05-12); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Vendors
Products
ruggedcom_rox_mx5000ruggedcom_rox_mx5000_firmwareruggedcom_rox_mx5000reruggedcom_rox_mx5000re_firmwareruggedcom_rox_rx1400ruggedcom_rox_rx1400_firmwareruggedcom_rox_rx1500ruggedcom_rox_rx1500_firmwareruggedcom_rox_rx1501ruggedcom_rox_rx1501_firmware

1 version affected across 22 products

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-05-12: 1Mentions · 2026-07-22: 1PoC Mentioned / Linked · 2026-05-12: 1Patch / Workaround · 2026-05-12: 1Technical Details · 2026-05-12: 105-1207-22
Signal classification2 categories
Patch
150.0%
General
150.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-05-121
Patch1
2026-07-221
General1
Full discourse2 posts
  • T1erOne@tieroneforum
    General

    Цепочка эксплуатации Siemens ROX II: от file disclosure до persistent root (CVE-2025-40947/48/49) https://tier1.life/thread/427 http://tieronemkfevyizxcnt355agysp2iemvhon6iyclwrc7yuc7oszgzrid.onion/thread/427 #articles

    Post summary

    The post announces an exploitation chain for Siemens ROX II involving CVE‑2025‑40947/48/49 but does not provide any PoC, exploit code, patch information, or confirmation of active exploitation.

    01010225
    267 followersView on X
  • Entity@0x2ed3bb60
    Patch

    Entity detects CVE-2025-40947: authenticated command injection in Siemens RUGGEDCOM ROX devices (&lt;V2.17.1). Attacker gains root RCE via unsanitized input during feature key install. Patch to V2.17.1+ now. https://0x2ed3bb60.xyz/threat/3636083d02d08cdd

    Post summary

    An entity reported detection of CVE‑2025‑40947, an authenticated command injection that allows root RCE on Siemens RUGGEDCOM ROX devices before v2.17.1, and a patch is now available for affected firmware.

    000008
    7 followersView on X
CPE platform detail22 entries

22 of 22 entries

PartVendorProductVersionTarget SWTarget HW
HWsiemensruggedcom_rox_mx5000---
OSsiemensruggedcom_rox_mx5000_firmware---
HWsiemensruggedcom_rox_mx5000re---
OSsiemensruggedcom_rox_mx5000re_firmware---
HWsiemensruggedcom_rox_rx1400---
OSsiemensruggedcom_rox_rx1400_firmware---
HWsiemensruggedcom_rox_rx1500---
OSsiemensruggedcom_rox_rx1500_firmware---
HWsiemensruggedcom_rox_rx1501---
OSsiemensruggedcom_rox_rx1501_firmware---
HWsiemensruggedcom_rox_rx1510---
OSsiemensruggedcom_rox_rx1510_firmware---
HWsiemensruggedcom_rox_rx1511---
OSsiemensruggedcom_rox_rx1511_firmware---
HWsiemensruggedcom_rox_rx1512---
OSsiemensruggedcom_rox_rx1512_firmware---
HWsiemensruggedcom_rox_rx1524---
OSsiemensruggedcom_rox_rx1524_firmware---
HWsiemensruggedcom_rox_rx1536---
OSsiemensruggedcom_rox_rx1536_firmware---
HWsiemensruggedcom_rox_rx5000---
OSsiemensruggedcom_rox_rx5000_firmware---

Explore more