BIS
Bosch · 5 CVEs
CVE-2023-32228
MEDIUM
A firmware bug which may lead to misinterpretation of data in the AMC2-4WCF and AMC2-2WCF allowing an adversary to gran…
Apr 11, 2024
CVE-2023-29241
HIGH
Improper Information in Cybersecurity Guidebook in Bosch Building Integration System (BIS) 5.0 may lead to wrong config…
Jun 30, 2023
CVE-2021-23843
HIGH
Lack of authentication mechanisms on the device
Jan 19, 2022
CVE-2021-23842
HIGH
Use of Hard-coded Cryptographic Key
Jan 19, 2022
CVE-2021-23859
CRITICAL
Denial of Service and Authentication Bypass Vulnerability in multiple Bosch products
Dec 8, 2021
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2023-32228 | A firmware bug which may lead to misinterpretation of data in the AMC2-4WCF and AMC2-2WCF allowing an adversary to grant access to the last authorized user. | MEDIUM | 0.23% | Apr 11, 2024 |
| CVE-2023-29241 | Improper Information in Cybersecurity Guidebook in Bosch Building Integration System (BIS) 5.0 may lead to wrong configuration which allows local users to acce… | HIGH | 0.36% | Jun 30, 2023 |
| CVE-2021-23843 | Lack of authentication mechanisms on the device | HIGH | 0.24% | Jan 19, 2022 |
| CVE-2021-23842 | Use of Hard-coded Cryptographic Key | HIGH | 0.14% | Jan 19, 2022 |
| CVE-2021-23859 | Denial of Service and Authentication Bypass Vulnerability in multiple Bosch products | CRITICAL | 1.00% | Dec 8, 2021 |
Showing 1 to 5 of 5 CVEs