Vulnerabilities > Bosch > Access Easy Controller Firmware

DATE CVE VULNERABILITY TITLE RISK
2021-12-08 CVE-2021-23859 Improper Handling of Exceptional Conditions vulnerability in Bosch products
An unauthenticated attacker is able to send a special HTTP request, that causes a service to crash.
network
low complexity
bosch CWE-755
7.5
2019-05-29 CVE-2019-6958 Missing Authentication for Critical Function vulnerability in Bosch products
A recently discovered security vulnerability affects all Bosch Video Management System (BVMS) versions 9.0 and below, DIVAR IP 2000, 3000, 5000 and 7000, Configuration Manager, Building Integration System (BIS) with Video Engine, Access Professional Edition (APE), Access Easy Controller (AEC), Bosch Video Client (BVC) and Video SDK (VSDK).
network
low complexity
bosch CWE-306
critical
9.1
2019-05-29 CVE-2019-6957 Out-of-bounds Write vulnerability in Bosch products
A recently discovered security vulnerability affects all Bosch Video Management System (BVMS) versions 9.0 and below, DIVAR IP 2000, 3000, 5000 and 7000, Video Recording Manager (VRM), Video Streaming Gateway (VSG), Configuration Manager, Building Integration System (BIS) with Video Engine, Access Professional Edition (APE), Access Easy Controller (AEC), Bosch Video Client (BVC) and Video SDK (VSDK).
network
low complexity
bosch CWE-787
critical
9.8