Vulnerabilities > Bosch > Low

DATE CVE VULNERABILITY TITLE RISK
2022-01-19 CVE-2021-23842 Use of Hard-coded Credentials vulnerability in Bosch products
Communication to the AMC2 uses a state-of-the-art cryptographic algorithm for symmetric encryption called Blowfish.
local
low complexity
bosch CWE-798
3.6
2021-01-14 CVE-2020-6777 Cross-site Scripting vulnerability in Bosch Praesensa Firmware and Praesideo Firmware
A vulnerability in the web-based management interface of Bosch PRAESIDEO until and including version 4.41 and Bosch PRAESENSA until and including version 1.10 allows an authenticated remote attacker with admin privileges to mount a stored Cross-Site-Scripting (XSS) attack against another user.
network
bosch CWE-79
3.5
2019-05-29 CVE-2019-11894 Improper Access Control vulnerability in Bosch Smart Home Controller Firmware
A potential improper access control vulnerability exists in the backup mechanism of the Bosch Smart Home Controller (SHC) before 9.8.905 that may result in unauthorized download of a backup.
2.9
2019-02-22 CVE-2019-7729 Incorrect Permission Assignment for Critical Resource vulnerability in Bosch Smart Camera
An issue was discovered in the Bosch Smart Camera App before 1.3.1 for Android.
local
low complexity
bosch CWE-732
2.1