Back

MEDIUM

Improper access control in the backup mechanism of the Bosch Smart Home Controller (SHC)

Published May 29, 2019

Description

A potential improper access control vulnerability exists in the backup mechanism of the Bosch Smart Home Controller (SHC) before 9.8.905 that may result in unauthorized download of a backup. In order to exploit the vulnerability, the adversary needs to download the backup directly after a backup triggered by a legitimate user has been completed.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner bosch
Published May 29, 2019
Updated Sep 17, 2024
Reserved May 13, 2019

CISA Vulnrichment

No data

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner bosch
Published May 29, 2019
Updated Sep 17, 2024

GitHub

No data