HIGH🇬🇧 English

CVE-2023-29241

CVSS 8.1v3.1pub. 2023-06-30upd. 2024-11-21

Improper Information in Cybersecurity Guidebook in Bosch Building Integration System (BIS) 5.0 may lead to wrong configuration which allows local users to access data via network

oryginał EN
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
  • Bosch Building Integration System

    APP
    Bosch
    5.0
🔵
ZWERYFIKUJ U PRODUCENTA
Brak jednoznacznych danych o patchu. Sprawdź referencje od producenta.
CWE
Referencje

Powiązane podatności

CVE-2021-23859CRITICAL9.1PL ✓ten sam produkt

Bosch BVMS/VRM — nieuwierzytelniona awaria usługi i obejście autoryzacji

CVE-2019-6957CRITICAL9.8PL ✓ten sam produkt

Przepełnienie buforu w produktach Bosch Video/Access — zdalne wykonanie kodu

CVE-2019-6958CRITICAL9.1PL ✓ten sam produkt

Bosch BVMS i powiązane produkty — brak uwierzytelnienia na porcie RCP+

CVE-2021-23843HIGH8.8ten sam produkt

The Bosch software tools AccessIPConfig.exe and AmcIpConfig.exe are used to configure certains settings in AMC...

CVE-2021-23842MEDIUM5.7ten sam produkt

Communication to the AMC2 uses a state-of-the-art cryptographic algorithm for symmetric encryption called Blow...