CVE-2019-11602: Leakage of stack traces in the backup & restore functionality of ProSyst mBS SDK and Bosch IoT Gateway Software
Leakage of stack traces in remote access to backup & restore in earlier versions than ProSyst mBS SDK 8.2.6 and Bosch IoT Gateway Software 9.2.0 allows remote attackers to gather information about the file system structure.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-11602?
CVE-2019-11602 is considered a medium severity vulnerability due to its potential for information disclosure.
How do I fix CVE-2019-11602?
To fix CVE-2019-11602, upgrade to Bosch IoT Gateway Software version 9.2.0 or ProSyst mBS SDK version 8.2.6 or later.
What information can be leaked due to CVE-2019-11602?
CVE-2019-11602 allows remote attackers to gather sensitive information about the file system structure.
Which versions of Bosch software are affected by CVE-2019-11602?
Bosch IoT Gateway Software versions prior to 9.2.0 and ProSyst mBS SDK versions prior to 8.2.6 are affected by CVE-2019-11602.
Is my system vulnerable if I am using Bosch software earlier than the patched versions?
Yes, if you are using versions of Bosch IoT Gateway Software earlier than 9.2.0 or ProSyst mBS SDK earlier than 8.2.6, your system is vulnerable to CVE-2019-11602.