First published: Thu Sep 12 2019(Updated: )
An unauthenticated attacker can achieve unauthorized access to sensitive data by exploiting Windows SMB protocol on a client installation. With Bosch Access Professional Edition (APE) 3.8, client installations need to be authorized by the APE administrator.
Credit: psirt@bosch.com
Affected Software | Affected Version | How to fix |
---|---|---|
Bosch Access | <=3.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-11899 has a high severity rating due to the potential for unauthorized access to sensitive data.
To fix CVE-2019-11899, users should upgrade to Bosch Access Professional Edition version 3.8 or later.
CVE-2019-11899 affects unprotected client installations of Bosch Access Professional Edition prior to version 3.8.
CVE-2019-11899 is an unauthenticated access vulnerability related to the Windows SMB protocol.
Yes, CVE-2019-11899 can be exploited remotely by an attacker with network access.