CVE-2019-11601: Path traversal in the backup & restore functionality of ProSyst mBS SDK and Bosch IoT Gateway Software
A directory traversal vulnerability in remote access to backup & restore in earlier versions than ProSyst mBS SDK 8.2.6 and Bosch IoT Gateway Software 9.2.0 allows remote attackers to write or delete files at any location.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-11601?
CVE-2019-11601 has a high severity rating due to its potential to allow unauthorized file manipulation by remote attackers.
How do I fix CVE-2019-11601?
To remediate CVE-2019-11601, upgrade to Bosch IoT Gateway Software version 9.2.0 or ProSyst mBS SDK version 8.2.6 or later.
What does CVE-2019-11601 affect?
CVE-2019-11601 affects Bosch IoT Gateway Software prior to version 9.2.0 and ProSyst mBS SDK prior to version 8.2.6.
What type of vulnerability is CVE-2019-11601?
CVE-2019-11601 is classified as a directory traversal vulnerability.
Can CVE-2019-11601 be exploited remotely?
Yes, CVE-2019-11601 can be exploited remotely by attackers to write or delete files at any location.