CVE-2023-52952
A vulnerability has been identified in HiMed Cockpit 12 pro (J31032-K2017-H259) (All versions >= V11.5.1 < V11.6.2), HiMed Cockpit 14 pro+ (J31032-K2017-H435) (All versions >= V11.5.1 < V11.6.2), HiMed Cockpit 18 pro (J31032-K2017-H260) (All versions >= V11.5.1 < V11.6.2), HiMed Cockpit 18 pro+ (J31032-K2017-H436) (All versions >= V11.5.1 < V11.6.2). The Kiosk Mode of the affected devices contains a restricted desktop environment escape vulnerability. This could allow an unauthenticated local attacker to escape the restricted environment and gain access to the underlying operating system.
Scoring
- Severity
- CRITICAL
- CVSS base score
- 9.3
- CVSS vector
- CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:H
- EPSS probability
- 0.06%
- CWE
- CWE-424
- Published
- 2024-10-08
- Last modified
- 2026-03-13
Affected products
- Siemens HiMed Cockpit 12 pro
- Siemens HiMed Cockpit 14 pro+
- Siemens HiMed Cockpit 18 pro
- Siemens HiMed Cockpit 18 pro+
Weakness type
Related vulnerabilities
- CVE-2024-58136 — Yii 2 before 2.0.52 mishandles the attaching of behavior that is defined by an __class array key, a CVE-2024-4990 regres
- CVE-2025-48827 — vBulletin 5.0.0 through 5.7.5 and 6.0.0 through 6.0.3 allows unauthenticated users to invoke protected API controllers'
- CVE-2025-48828 — Certain vBulletin versions might allow attackers to execute arbitrary PHP code by abusing Template Conditionals in the t
- CVE-2024-3459 — KioWare for Windows (versions all through 8.34) allows to escape the environment by downloading PDF files, which then by
- CVE-2025-68939 — Gitea before 1.23.0 allows attackers to add attachments with forbidden file extensions by editing an attachment name via
- CVE-2024-3460 — In KioWare for Windows (versions all through 8.34) it is possible to exit this software and use other already opened app
- CVE-2024-8781 — Container Escape Vulnerability in TR7's Application Security Platform (ASP)
- CVE-2025-6250 — Privilege Management for Windows - Elevation of Privilege