Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
bosch access vulnerabilities and exploits
(subscribe to this query)
9.9
CVSSv3
CVE-2019-11898
Unauthorized APE administration privileges can be achieved by reverse engineering one of the APE service tools. The service tool is discontinued with Bosch Access Professional Edition (APE) 3.8.
Bosch Access
9.8
CVSSv3
CVE-2022-32535
The Bosch Ethernet switch PRA-ES8P2S with software version 1.01.05 runs its web server with root privilege. In combination with CVE-2022-23534 this could give an attacker root access to the switch.
Bosch Pra-es8p2s Firmware
9.8
CVSSv3
CVE-2019-11684
Improper Access Control in the RCP+ server of the Bosch Video Recording Manager (VRM) component allows arbitrary and unauthenticated access to a limited subset of certificates, stored in the underlying Microsoft Windows operating system. The fixed versions implement modified auth...
Bosch Video Recording Manager
Bosch Divar Ip 5000 Firmware
Bosch Video Management System 3.70.0056
Bosch Video Management System 3.70.0058
Bosch Video Management System 3.70.0060
Bosch Video Management System 3.70.0062
Bosch Video Management System 3.71.0022
Bosch Video Management System 3.71.0029
Bosch Video Management System 3.71.0031
Bosch Video Management System 3.71.0032
Bosch Video Management System 3.81.0032
Bosch Video Management System 3.81.0038
Bosch Video Management System 3.81.0048
9.8
CVSSv3
CVE-2019-6957
A recently discovered security vulnerability affects all Bosch Video Management System (BVMS) versions 9.0 and below, DIVAR IP 2000, 3000, 5000 and 7000, Video Recording Manager (VRM), Video Streaming Gateway (VSG), Configuration Manager, Building Integration System (BIS) with Vi...
Bosch Video Recording Manager
Bosch Bosch Video Management System
Bosch Access Professional Edition
Bosch Building Integration System
Bosch Building Integration System 4.5
Bosch Building Integration System 4.6
Bosch Building Integration System 4.6.1
Bosch Bosch Video Client
Bosch Video Sdk
Bosch Configuration Manager
Bosch Video Streaming Gateway
Bosch Dip 2000 Firmware
Bosch Dip 3000 Firmware -
Bosch Dip 5000 Firmware
Bosch Dip 7000 Firmware -
Bosch Access Easy Controller Firmware 2.1.8.5
Bosch Access Easy Controller Firmware 2.1.9.3
Bosch Access Easy Controller Firmware 2.1.9.1
Bosch Access Easy Controller Firmware 2.1.9.0
9.1
CVSSv3
CVE-2019-6958
A recently discovered security vulnerability affects all Bosch Video Management System (BVMS) versions 9.0 and below, DIVAR IP 2000, 3000, 5000 and 7000, Configuration Manager, Building Integration System (BIS) with Video Engine, Access Professional Edition (APE), Access Easy Con...
Bosch Bosch Video Management System
Bosch Access Professional Edition
Bosch Building Integration System
Bosch Building Integration System 4.5
Bosch Building Integration System 4.6
Bosch Building Integration System 4.6.1
Bosch Bosch Video Client
Bosch Video Sdk
Bosch Configuration Manager
Bosch Dip 2000 Firmware
Bosch Dip 3000 Firmware -
Bosch Dip 5000 Firmware
Bosch Dip 7000 Firmware -
Bosch Access Easy Controller Firmware 2.1.8.5
Bosch Access Easy Controller Firmware 2.1.9.0
Bosch Access Easy Controller Firmware 2.1.9.1
Bosch Access Easy Controller Firmware 2.1.9.3
8.8
CVSSv3
CVE-2023-48257
The vulnerability allows a remote malicious user to access sensitive data inside exported packages or obtain up to Remote Code Execution (RCE) with root privileges on the device. The vulnerability can be exploited directly by authenticated users, via crafted HTTP requests, or ind...
Bosch Nexo-os
8.8
CVSSv3
CVE-2023-48252
The vulnerability allows an authenticated remote malicious user to perform actions exceeding their authorized access via crafted HTTP requests.
Bosch Nexo-os
8.8
CVSSv3
CVE-2023-48253
The vulnerability allows a remote authenticated malicious user to read or update arbitrary content of the authentication database via a crafted HTTP request. By abusing this vulnerability it is possible to exfiltrate other users’ password hashes or update them with arbitrar...
Bosch Nexo-os
8.8
CVSSv3
CVE-2022-47648
An Improper Access Control vulnerability allows an malicious user to access the control panel of the B420 without requiring any sort of authorization or authentication due to the IP based authorization. If an authorized user has accessed a publicly available B420 product using va...
Bosch B420 Firmware 02.02.0001
8.8
CVSSv3
CVE-2022-32536
The user access rights validation in the web server of the Bosch Ethernet switch PRA-ES8P2S with software version 1.01.05 was insufficient. This would allow a non-administrator user to obtain administrator user access rights.
Bosch Pra-es8p2s Firmware
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
camera
bypass
CVE-2024-3592
CVE-2024-37383
CVE-2024-24919
CVE-2024-27822
CVE-2024-36788
CVE-2024-36789
man-in-the-middle
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »