The vendor explicitly identifies these products as affected by this CVE.
- RUGGEDCOM APE1808
- Summary
- A SQL Injection vulnerability was discovered in the Alert functionality due to improper validation of an input parameter. An authenticated user with limited privileges can execute arbitrary SELECT SQL statements on the DBMS used by the web application, potentially exposing unauthorized data.
- Remediation
- Upgrade Nozomi Guardian / CMC to V25.4.0. Using Web GUI might have errors and it is recommended to use the CLI for the upgrade. Contact customer support to receive patch and update information
