Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

Path traversal in the backup & restore functionality of ProSyst mBS SDK and Bos…

Disclosure Date: August 21, 2019 (last updated November 27, 2024)
A directory traversal vulnerability in remote access to backup & restore in earlier versions than ProSyst mBS SDK 8.2.6 and Bosch IoT Gateway Software 9.2.0 allows remote attackers to write or delete files at any location.
Attacker Value
Unknown

Path traversal in ProSyst mBS SDK and Bosch IoT Gateway Software

Disclosure Date: August 21, 2019 (last updated November 27, 2024)
A HTTP Traversal Attack in earlier versions than ProSyst mBS SDK 8.2.6 and Bosch IoT Gateway Software 9.0.2 allows remote attackers to read files outside the http root.
0
Attacker Value
Unknown

Leakage of stack traces in the backup & restore functionality of ProSyst mBS SD…

Disclosure Date: August 21, 2019 (last updated November 27, 2024)
Leakage of stack traces in remote access to backup & restore in earlier versions than ProSyst mBS SDK 8.2.6 and Bosch IoT Gateway Software 9.2.0 allows remote attackers to gather information about the file system structure.
0
Attacker Value
Unknown

Server-side request forgery in the backup & restore functionality of ProSyst mB…

Disclosure Date: August 21, 2019 (last updated November 27, 2024)
A Server-Side Request Forgery (SSRF) vulnerability in the backup & restore functionality in earlier versions than ProSyst mBS SDK 8.2.6 and Bosch IoT Gateway Software 9.3.0 allows a remote attacker to forge GET requests to arbitrary URLs. In addition, this could potentially allow an attacker to read sensitive zip files from the local server.
0