CVE-2019-11894
29.05.2019, 21:29
A potential improper access control vulnerability exists in the backup mechanism of the Bosch Smart Home Controller (SHC) before 9.8.905 that may result in unauthorized download of a backup. In order to exploit the vulnerability, the adversary needs to download the backup directly after a backup triggered by a legitimate user has been completed.Enginsight
Vendor | Product | Version |
---|---|---|
bosch | smart_home_controller_firmware | 𝑥 < 9.8.905 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration