Improper Information in Cybersecurity Guidebook in Bosch Building Integration System (BIS) 5.0 may lead to wrong configuration which allows local users to access data via network
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:NBosch Building Integration System
APPBosch5.0
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Related vulnerabilities
CVE-2021-23859CRITICAL9.1PL ✓same product
Bosch BVMS/VRM — nieuwierzytelniona awaria usługi i obejście autoryzacji
CVE-2019-6957CRITICAL9.8PL ✓same product
Przepełnienie buforu w produktach Bosch Video/Access — zdalne wykonanie kodu
CVE-2019-6958CRITICAL9.1PL ✓same product
Bosch BVMS i powiązane produkty — brak uwierzytelnienia na porcie RCP+
CVE-2021-23843HIGH8.8same product
The Bosch software tools AccessIPConfig.exe and AmcIpConfig.exe are used to configure certains settings in AMC...
CVE-2021-23842MEDIUM5.7same product
Communication to the AMC2 uses a state-of-the-art cryptographic algorithm for symmetric encryption called Blow...