CVE-2019-11898: Critical severity bosch access vulnerability
Published Sep 12, 2019
·Updated
Unauthorized APE administration privileges can be achieved by reverse engineering one of the APE service tools. The service tool is discontinued with Bosch Access Professional Edition (APE) 3.8.
Affected Software
1 affected component
Bosch Access<3.8
Event History
Sep 12, 2019
CVE Published
via MITRE·06:23 PM
Data Sourced
via MITRE·06:23 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-11898?
CVE-2019-11898 is classified as a medium severity vulnerability due to potential unauthorized access.
2
How do I fix CVE-2019-11898?
To fix CVE-2019-11898, users should upgrade to Bosch Access Professional Edition version 3.8 or later.
3
What is affected by CVE-2019-11898?
CVE-2019-11898 affects Bosch Access Professional Edition versions prior to 3.8.
4
What are the potential impacts of CVE-2019-11898?
The potential impacts of CVE-2019-11898 include unauthorized administrative privileges over the APE service.
5
Can CVE-2019-11898 be exploited remotely?
CVE-2019-11898 requires local access and reverse engineering efforts, making remote exploitation unlikely.