PT-2020-19224 · Bosch · Bosch Smart Home System App

Published

2020-09-16

·

Updated

2020-09-22

·

CVE-2020-6781

CVSS v3.1

7.4

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions Bosch Smart Home System App for iOS versions prior to 9.17.1
Description The issue concerns improper certificate validation for certain connections, potentially allowing interception of video contents through a man-in-the-middle attack.
Recommendations For versions prior to 9.17.1, update to version 9.17.1 or later to resolve the issue.

Fix

Improper Certificate Validation

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-6781

Affected Products

Bosch Smart Home System App