VYPR

Vendor CVEs

Bosch

All CVEs

149 total · sorted by risk
  • CVE-2025-24347MedApr 30, 2025
    risk 0.42cvss 6.5epss 0.00

    A vulnerability in the “Network Interfaces” functionality of the web application of ctrlX OS allows a remote authenticated (low-privileged) attacker to manipulate the network configuration file via a crafted HTTP request.

  • CVE-2025-24341MedApr 30, 2025
    risk 0.42cvss 6.5epss 0.00

    A vulnerability in the web application of ctrlX OS allows a remote authenticated (low-privileged) attacker to induce a Denial-of-Service (DoS) condition on the device via multiple crafted HTTP requests. In the worst case, a full power cycle is needed to regain control of the…

  • CVE-2025-24340MedApr 30, 2025
    risk 0.42cvss 6.5epss 0.00

    A vulnerability in the users configuration file of ctrlX OS may allow a remote authenticated (low-privileged) attacker to recover the plaintext passwords of other users.

  • CVE-2023-48249MedJan 10, 2024
    risk 0.42cvss 6.5epss 0.01

    The vulnerability allows an authenticated remote attacker to list arbitrary folders in all paths of the system under the context of the application OS user (“root”) via a crafted HTTP request. By abusing this vulnerability, it is possible to steal session cookies of other…

  • CVE-2023-48246MedJan 10, 2024
    risk 0.42cvss 6.5epss 0.01

    The vulnerability allows a remote attacker to download arbitrary files in all paths of the system under the context of the application OS user (“root”) via a crafted HTTP request.

  • CVE-2023-48245MedJan 10, 2024
    risk 0.42cvss 6.5epss 0.01

    The vulnerability allows an unauthenticated remote attacker to upload arbitrary files under the context of the application OS user (“root”) via a crafted HTTP request.

  • CVE-2023-48242MedJan 10, 2024
    risk 0.42cvss 6.5epss 0.01

    The vulnerability allows an authenticated remote attacker to download arbitrary files in all paths of the system under the context of the application OS user (“root”) via a crafted HTTP request.

  • CVE-2021-23861MedDec 8, 2021
    risk 0.42cvss 6.5epss 0.01

    By executing a special command, an user with administrative rights can get access to extended debug functionality on the VRM allowing an impact on integrity or availability of the installed software. This issue also affects installations of the DIVAR IP and BVMS with VRM…

  • CVE-2019-8952MedMay 13, 2019
    risk 0.42cvss 6.5epss 0.01

    A Path Traversal vulnerability located in the webserver affects several Bosch hardware and software products. The vulnerability potentially allows a remote authorized user to access arbitrary files on the system via the network interface. Affected hardware products: Bosch DIVAR…

  • CVE-2016-4507MedJul 6, 2016
    risk 0.42cvss 6.4epss 0.01

    SQL injection vulnerability in Rexroth Bosch BLADEcontrol-WebVIS 3.0.2 and earlier allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.

  • CVE-2025-24345MedApr 30, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability in the “Hosts” functionality of the web application of ctrlX OS allows a remote authenticated (low-privileged) attacker to manipulate the “hosts” file in an unintended manner via a crafted HTTP request.

  • CVE-2025-24344MedApr 30, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability in the error notification messages of the web application of ctrlX OS allows a remote unauthenticated attacker to inject arbitrary HTML tags and, possibly, execute arbitrary client-side code in the context of another user's browser via a crafted HTTP request.

  • CVE-2023-48255MedJan 10, 2024
    risk 0.41cvss 6.3epss 0.01

    The vulnerability allows an unauthenticated remote attacker to send malicious network requests containing arbitrary client-side script code and obtain its execution inside a victim’s session via a crafted URL, HTTP request, or simply by waiting for the victim to view the…

  • CVE-2021-23863MedJan 28, 2022
    risk 0.40cvss 6.1epss 0.01

    HTML code injection vulnerability in Android Application, Bosch Video Security, version 3.2.3. or earlier, when successfully exploited allows an attacker to inject random HTML code into a component loaded by WebView, thus allowing the Application to display web resources…

  • CVE-2019-8951MedMay 13, 2019
    risk 0.40cvss 6.1epss 0.01

    An Open Redirect vulnerability located in the webserver affects several Bosch hardware and software products. The vulnerability potentially allows a remote attacker to redirect users to an arbitrary URL. Affected hardware products: Bosch DIVAR IP 2000 (vulnerable versions: 3.10;…

  • CVE-2016-4508MedJul 6, 2016
    risk 0.40cvss 6.1epss 0.01

    Cross-site scripting (XSS) vulnerability in Rexroth Bosch BLADEcontrol-WebVIS 3.0.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

  • CVE-2023-35867MedDec 18, 2023
    risk 0.38cvss 5.9epss 0.01

    An improper handling of a malformed API answer packets to API clients in Bosch BT software products can allow an unauthenticated attacker to cause a Denial of Service (DoS) situation. To exploit this vulnerability an attacker has to replace an existing API server e.g. through…

  • CVE-2022-40183MedOct 27, 2022
    risk 0.38cvss 5.8epss 0.00

    An error in the URL handler of the VIDEOJET multi 4000 may lead to a reflected cross site scripting (XSS) in the web-based interface. An attacker with knowledge of the encoder address can send a crafted link to a user, which will execute JavaScript code in the context of the…

  • CVE-2022-32540MedSep 30, 2022
    risk 0.38cvss 5.9epss 0.00

    Information Disclosure in Operator Client application in BVMS 10.1.1, 11.0 and 11.1.0 and VIDEOJET Decoder VJD-7513 versions 10.23 and 10.30 allows man-in-the-middle attacker to compromise confidential video stream. This is only applicable for UDP encryption when target system…

  • CVE-2021-23842MedJan 19, 2022
    risk 0.37cvss 5.7epss 0.00

    Communication to the AMC2 uses a state-of-the-art cryptographic algorithm for symmetric encryption called Blowfish. An attacker could retrieve the key from the firmware to decrypt network traffic between the AMC2 and the host system. Thus, an attacker can exploit this…

  • CVE-2019-11894MedMay 29, 2019
    risk 0.37cvss 5.7epss 0.01

    A potential improper access control vulnerability exists in the backup mechanism of the Bosch Smart Home Controller (SHC) before 9.8.905 that may result in unauthorized download of a backup. In order to exploit the vulnerability, the adversary needs to download the backup…

  • CVE-2023-48258MedJan 10, 2024
    risk 0.36cvss 5.5epss 0.00

    The vulnerability allows a remote attacker to delete arbitrary files on the file system via a crafted URL or HTTP request through a victim’s session.

  • CVE-2023-48248MedJan 10, 2024
    risk 0.36cvss 5.5epss 0.00

    The vulnerability allows an authenticated remote attacker to upload a malicious file to the SD card containing arbitrary client-side script code and obtain its execution inside a victim’s session via a crafted URL, HTTP request, or simply by waiting for the victim to view the…

  • CVE-2025-24348MedApr 30, 2025
    risk 0.35cvss 5.4epss 0.01

    A vulnerability in the “Network Interfaces” functionality of the web application of ctrlX OS allows a remote authenticated (low-privileged) attacker to manipulate the wireless network configuration file via a crafted HTTP request.

  • CVE-2025-24343MedApr 30, 2025
    risk 0.35cvss 5.4epss 0.01

    A vulnerability in the “Manages app data” functionality of the web application of ctrlX OS allows a remote authenticated (low-privileged) attacker to write arbitrary files in arbitrary file system paths via a crafted HTTP request.

  • CVE-2019-11602MedAug 21, 2019
    risk 0.35cvss 5.3epss 0.01

    Leakage of stack traces in remote access to backup & restore in earlier versions than ProSyst mBS SDK 8.2.6 and Bosch IoT Gateway Software 9.2.0 allows remote attackers to gather information about the file system structure.

  • CVE-2019-11895MedMay 29, 2019
    risk 0.35cvss 5.3epss 0.01

    A potential improper access control vulnerability exists in the JSON-RPC interface of the Bosch Smart Home Controller (SHC) before 9.8.905 that may result in a successful denial of service of the SHC and connected sensors and actuators. In order to exploit the vulnerability, the…

  • CVE-2025-48861MedAug 14, 2025
    risk 0.34cvss 5.3epss 0.00

    A vulnerability in the Task API endpoint of the ctrlX OS setup mechanism allowed a remote, unauthenticated attacker to access and extract internal application data, including potential debug logs and the version of installed apps.

  • CVE-2025-24342MedApr 30, 2025
    risk 0.34cvss 5.3epss 0.00

    A vulnerability in the login functionality of the web application of ctrlX OS allows a remote unauthenticated attacker to guess valid usernames via multiple crafted HTTP requests.

  • CVE-2023-48261MedJan 10, 2024
    risk 0.34cvss 5.3epss 0.01

    The vulnerability allows a remote unauthenticated attacker to read arbitrary content of the results database via a crafted HTTP request.

  • CVE-2023-48260MedJan 10, 2024
    risk 0.34cvss 5.3epss 0.01

    The vulnerability allows a remote unauthenticated attacker to read arbitrary content of the results database via a crafted HTTP request.

  • CVE-2023-48259MedJan 10, 2024
    risk 0.34cvss 5.3epss 0.01

    The vulnerability allows a remote unauthenticated attacker to read arbitrary content of the results database via a crafted HTTP request.

  • CVE-2023-48256MedJan 10, 2024
    risk 0.34cvss 5.3epss 0.00

    The vulnerability allows a remote attacker to inject arbitrary HTTP response headers or manipulate HTTP response bodies inside a victim’s session via a crafted URL or HTTP request.

  • CVE-2023-48254MedJan 10, 2024
    risk 0.34cvss 5.3epss 0.00

    The vulnerability allows a remote attacker to inject and execute arbitrary client-side script code inside a victim’s session via a crafted URL or HTTP request.

  • CVE-2023-48247MedJan 10, 2024
    risk 0.34cvss 5.3epss 0.01

    The vulnerability allows an unauthenticated remote attacker to read arbitrary files under the context of the application OS user (“root”) via a crafted HTTP request.

  • CVE-2023-48244MedJan 10, 2024
    risk 0.34cvss 5.3epss 0.00

    The vulnerability allows a remote attacker to inject and execute arbitrary client-side script code inside a victim’s session via a crafted URL or HTTP request.

  • CVE-2022-41677MedDec 18, 2023
    risk 0.34cvss 5.3epss 0.01

    An information disclosure vulnerability was discovered in Bosch IP camera devices allowing an unauthenticated attacker to retrieve information (like capabilities) about the device itself and network settings of the device, disclosing possibly internal network settings if the…

  • CVE-2025-24339MedApr 30, 2025
    risk 0.33cvss 5.0epss 0.00

    A vulnerability in the web application of ctrlX OS allows a remote unauthenticated attacker to conduct various attacks against users of the vulnerable system, including web cache poisoning or Man-in-the-Middle (MitM), via a crafted HTTP request.

  • CVE-2022-40184MedOct 27, 2022
    risk 0.33cvss 5.1epss 0.00

    Incomplete filtering of JavaScript code in different configuration fields of the web based interface of the VIDEOJET multi 4000 allows an attacker with administrative credentials to store JavaScript code which will be executed for all administrators accessing the same…

  • CVE-2021-23860MedDec 8, 2021
    risk 0.33cvss 5.0epss 0.01

    An error in a page handler of the VRM may lead to a reflected cross site scripting (XSS) in the web-based interface. To exploit this vulnerability an attack must be able to modify the HTTP header that is sent. This issue also affects installations of the DIVAR IP and BVMS with…

  • CVE-2023-32229MedJun 15, 2023
    risk 0.32cvss 4.9epss 0.01

    Due to an error in the software interface to the secure element chip on Bosch IP cameras of family CPP13 and CPP14, the chip can be permanently damaged when enabling the Stream security option (signing of the video stream) with option MD5, SHA-1 or SHA-256.

  • CVE-2021-23852MedJun 9, 2021
    risk 0.32cvss 4.9epss 0.01

    An authenticated attacker with administrator rights Bosch IP cameras can call an URL with an invalid parameter that causes the camera to become unresponsive for a few seconds and cause a Denial of Service (DoS).

  • CVE-2022-32535MedJun 23, 2022
    risk 0.31cvss 4.8epss 0.01

    The Bosch Ethernet switch PRA-ES8P2S with software version 1.01.05 runs its web server with root privilege. In combination with CVE-2022-23534 this could give an attacker root access to the switch.

  • CVE-2020-6777MedJan 14, 2021
    risk 0.31cvss 4.8epss 0.01

    A vulnerability in the web-based management interface of Bosch PRAESIDEO until and including version 4.41 and Bosch PRAESENSA until and including version 1.10 allows an authenticated remote attacker with admin privileges to mount a stored Cross-Site-Scripting (XSS) attack…

  • CVE-2023-32228MedApr 11, 2024
    risk 0.30cvss 4.6epss 0.00

    A firmware bug which may lead to misinterpretation of data in the AMC2-4WCF and AMC2-2WCF allowing an adversary to grant access to the last authorized user.

  • CVE-2020-6780MedJan 26, 2021
    risk 0.29cvss 4.4epss 0.01

    Use of Password Hash With Insufficient Computational Effort in the database of Bosch FSM-2500 server and Bosch FSM-5000 server up to and including version 5.2 allows a remote attacker with admin privileges to dump the credentials of other users and possibly recover their…

  • CVE-2019-7729LowFeb 22, 2019
    risk 0.21cvss 3.3epss 0.00

    An issue was discovered in the Bosch Smart Camera App before 1.3.1 for Android. Due to setting of insecure permissions, a malicious app could potentially succeed in retrieving video clips or still images that have been cached for clip sharing. (The Bosch Smart Home App is not…

  • CVE-2024-58330HigJul 23, 2026
    risk 0.00cvss 7.5epss 0.00

    A missing authentication check in Bosch IP cameras of families CPP13 and CPP14 allows an unauthenticated attacker to retrieve video analytics event data.

  • CVE-2024-58023HigJul 23, 2026
    risk 0.00cvss 8.4epss 0.00

    Information disclosure in Bosch Configuration Manager in Version 7.72.0106 allows an attacker to access sensitive information.

Page 3 of 3