Possible Access to Debug Functions in Bosch VRM / BVMS
CVE-2021-23861
6.5MEDIUM
Key Information:
- Vendor
Bosch
- Vendor
- CVE Published:
- 8 December 2021
What is CVE-2021-23861?
By executing a special command, an user with administrative rights can get access to extended debug functionality on the VRM allowing an impact on integrity or availability of the installed software. This issue also affects installations of the DIVAR IP and BVMS with VRM installed.
Affected Version(s)
BVMS <= 9.0.0
BVMS 11.0 < 11.0.0
BVMS 10.0 < 10.0.2