Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
bosch access vulnerabilities and exploits
(subscribe to this query)
10
CVSSv2
CVE-2022-32535
The Bosch Ethernet switch PRA-ES8P2S with software version 1.01.05 runs its web server with root privilege. In combination with CVE-2022-23534 this could give an attacker root access to the switch.
Bosch Pra-es8p2s Firmware
10
CVSSv2
CVE-2019-11684
Improper Access Control in the RCP+ server of the Bosch Video Recording Manager (VRM) component allows arbitrary and unauthenticated access to a limited subset of certificates, stored in the underlying Microsoft Windows operating system. The fixed versions implement modified auth...
Bosch Video Recording Manager
Bosch Divar Ip 5000 Firmware
Bosch Video Management System 3.70.0056
Bosch Video Management System 3.70.0058
Bosch Video Management System 3.70.0060
Bosch Video Management System 3.70.0062
Bosch Video Management System 3.71.0022
Bosch Video Management System 3.71.0029
Bosch Video Management System 3.71.0031
Bosch Video Management System 3.71.0032
Bosch Video Management System 3.81.0032
Bosch Video Management System 3.81.0038
Bosch Video Management System 3.81.0048
9
CVSSv2
CVE-2022-32536
The user access rights validation in the web server of the Bosch Ethernet switch PRA-ES8P2S with software version 1.01.05 was insufficient. This would allow a non-administrator user to obtain administrator user access rights.
Bosch Pra-es8p2s Firmware
7.5
CVSSv2
CVE-2019-6957
A recently discovered security vulnerability affects all Bosch Video Management System (BVMS) versions 9.0 and below, DIVAR IP 2000, 3000, 5000 and 7000, Video Recording Manager (VRM), Video Streaming Gateway (VSG), Configuration Manager, Building Integration System (BIS) with Vi...
Bosch Video Recording Manager
Bosch Bosch Video Management System
Bosch Access Professional Edition
Bosch Building Integration System
Bosch Building Integration System 4.5
Bosch Building Integration System 4.6
Bosch Building Integration System 4.6.1
Bosch Bosch Video Client
Bosch Video Sdk
Bosch Configuration Manager
Bosch Video Streaming Gateway
Bosch Dip 2000 Firmware
Bosch Dip 3000 Firmware -
Bosch Dip 5000 Firmware
Bosch Dip 7000 Firmware -
Bosch Access Easy Controller Firmware 2.1.8.5
Bosch Access Easy Controller Firmware 2.1.9.3
Bosch Access Easy Controller Firmware 2.1.9.1
Bosch Access Easy Controller Firmware 2.1.9.0
7.2
CVSSv2
CVE-2020-6774
Improper Access Control in the Kiosk Mode functionality of Bosch Recording Station allows a local unauthenticated malicious user to escape from the Kiosk Mode and access the underlying operating system.
Bosch Recording Station Firmware -
7.1
CVSSv2
CVE-2019-11895
A potential improper access control vulnerability exists in the JSON-RPC interface of the Bosch Smart Home Controller (SHC) prior to 9.8.905 that may result in a successful denial of service of the SHC and connected sensors and actuators. In order to exploit the vulnerability, th...
Bosch Smart Home Controller Firmware
6.8
CVSSv2
CVE-2019-11892
A potential improper access control vulnerability exists in the JSON-RPC interface of the Bosch Smart Home Controller (SHC) prior to 9.8.905 that may result in reading or modification of the SHC's configuration or triggering and restoring backups. In order to exploit the vul...
Bosch Smart Home Controller Firmware
6.5
CVSSv2
CVE-2021-23850
A specially crafted TCP/IP packet may cause a camera recovery image telnet interface to crash. It may also cause a buffer overflow which could enable remote code execution. The recovery image can only be booted with administrative rights or with physical access to the camera and ...
Bosch Autodome Ip 4000i Firmware Cpp7.3
Bosch Autodome Ip 5000i Firmware Cpp7.3
Bosch Autodome Ip Starlight 5000i Firmware Cpp7.3
Bosch Autodome Ip Starlight 7000i Firmware Cpp7.3
Bosch Dinion Ip 3000i Firmware Cpp7.3
Bosch Dinion Ip Bullet 4000i Firmware Cpp7.3
Bosch Dinion Ip Bullet 5000 Firmware Cpp7.3
Bosch Dinion Ip Bullet 5000i Firmware Cpp7.3
Bosch Dinion Ip Bullet 6000i Firmware Cpp7.3
Bosch Flexidome Ip 3000i Firmware Cpp7.3
Bosch Flexidome Ip 4000i Firmware Cpp7.3
Bosch Flexidome Ip 5000i Firmware Cpp7.3
Bosch Flexidome Ip Starlight 5000i Firmware Cpp7.3
Bosch Flexidome Ip Starlight 8000i Firmware Cpp7.3
Bosch Mic Ip Starlight 7000i Firmware Cpp7.3
Bosch Mic Ip Starlight 7100i Firmware Cpp7.3
Bosch Mic Ip Ultra 7100i Firmware Cpp7.3
Bosch Mic Ip Fusion 9000i Firmware Cpp7.3
Bosch Dinion Ip Starlight 6000 Firmware Cpp7
Bosch Dinion Ip Starlight 7000 Firmware Cpp7
Bosch Dinion Ip Thermal 8000 Firmware Cpp7
Bosch Flexidome Ip Starlight 6000 Firmware Cpp7
6.5
CVSSv2
CVE-2021-23851
A specially crafted TCP/IP packet may cause the camera recovery image web interface to crash. It may also cause a buffer overflow which could enable remote code execution. The recovery image can only be booted with administrative rights or with physical access to the camera and a...
Bosch Autodome Ip 4000i Firmware Cpp7.3
Bosch Autodome Ip 5000i Firmware Cpp7.3
Bosch Autodome Ip Starlight 5000i Firmware Cpp7.3
Bosch Autodome Ip Starlight 7000i Firmware Cpp7.3
Bosch Dinion Ip 3000i Firmware Cpp7.3
Bosch Dinion Ip Bullet 4000i Firmware Cpp7.3
Bosch Dinion Ip Bullet 5000 Firmware Cpp7.3
Bosch Dinion Ip Bullet 5000i Firmware Cpp7.3
Bosch Dinion Ip Bullet 6000i Firmware Cpp7.3
Bosch Flexidome Ip 3000i Firmware Cpp7.3
Bosch Flexidome Ip 4000i Firmware Cpp7.3
Bosch Flexidome Ip 5000i Firmware Cpp7.3
Bosch Flexidome Ip Starlight 5000i Firmware Cpp7.3
Bosch Flexidome Ip Starlight 8000i Firmware Cpp7.3
Bosch Mic Ip Starlight 7000i Firmware Cpp7.3
Bosch Mic Ip Starlight 7100i Firmware Cpp7.3
Bosch Mic Ip Ultra 7100i Firmware Cpp7.3
Bosch Mic Ip Fusion 9000i Firmware Cpp7.3
Bosch Dinion Ip Starlight 6000 Firmware Cpp7
Bosch Dinion Ip Starlight 7000 Firmware Cpp7
Bosch Dinion Ip Thermal 8000 Firmware Cpp7
Bosch Flexidome Ip Starlight 6000 Firmware Cpp7
6.5
CVSSv2
CVE-2019-11898
Unauthorized APE administration privileges can be achieved by reverse engineering one of the APE service tools. The service tool is discontinued with Bosch Access Professional Edition (APE) 3.8.
Bosch Access
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-20065
open redirect
CVE-2024-1086
path traversal
CVE-2024-29825
XXE
CVE-2024-29822
CVE-2024-20696
CVE-2024-3564
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »