A path traversal vulnerability in the Bosch Video Management System (BVMS) FileTransferService allows an authenticated remote attacker to read arbitrary files from the Central Server. This affects Bosch BVMS versions 10.0 <= 10.0.0.1225, 9.0 <= 9.0.0.827, 8.0 <= 8.0.329 and 7.5 and older. This affects Bosch BVMS Viewer versions 10.0 <= 10.0.0.1225, 9.0 <= 9.0.0.827, 8.0 <= 8.0.329 and 7.5 and older. This affects Bosch DIVAR IP 3000, DIVAR IP 7000 and DIVAR IP all-in-one 5000 if a vulnerable BVMS version is installed.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:NBosch Divar Ip 3000
HWBoschall versionsBosch Divar Ip 7000
HWBoschall versionsBosch Divar Ip All In One 5000
HWBoschall versionsBosch Video Management System
APPBosch8.0 – 8.0.0.329≤ 7.59.0 – 9.0.0.82710.0 – 10.0.0.1225Bosch Video Management System Viewer
APPBosch8.0 – 8.0.32910.0 – 10.0.0.1225≤ 7.59.0 – 9.0.0.827
Related vulnerabilities
Nieprawidłowa kontrola dostępu w serwerze RCP+ komponentu Bosch VRM
Brak uwierzytelnienia w Bosch Video Streaming Gateway — pełny dostęp zdalny
RCE przez deserializację w Bosch BVMS Mobile Video Service
Improper Authorization in SSH server in Bosch VMS 11.0, 11.1.0, and 11.1.1 allows a remote authenticated user ...
Loading a DLL through an Uncontrolled Search Path Element in Bosch BVMS and BVMS Viewer in versions 10.1.0, 10...