Unrated severityNVD Advisory· Published May 29, 2019· Updated Sep 17, 2024
Improper access control in the backup mechanism of the Bosch Smart Home Controller (SHC)
CVE-2019-11894
Description
A potential improper access control vulnerability exists in the backup mechanism of the Bosch Smart Home Controller (SHC) before 9.8.905 that may result in unauthorized download of a backup. In order to exploit the vulnerability, the adversary needs to download the backup directly after a backup triggered by a legitimate user has been completed.
Affected products
1- Range: unspecified
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- psirt.bosch.com/Advisory/BOSCH-SA-662084.htmlmitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.