PT-2019-12555 · Bosch · Bosch Access Professional Edition

Oleksii Orekhov

·

Publicado

2019-09-12

·

Atualizado

2019-10-09

·

CVE-2019-11898

CVSS v3.1

9.9

Crítica

VetorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Bosch Access Professional Edition (APE) versions prior to 3.8
Description The issue allows unauthorized APE administration privileges to be obtained through reverse engineering of a discontinued APE service tool.
Recommendations For versions prior to 3.8, update to version 3.8 or later to resolve the issue.

Correção

Using Hardcoded Credentials

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-11898

Produtos afetados

Bosch Access Professional Edition