CVE-2025-24341: Medium severity bosch ctrlx os vulnerability
A vulnerability in the web application of ctrlX OS allows a remote authenticated (low-privileged) attacker to induce a Denial-of-Service (DoS) condition on the device via multiple crafted HTTP requests. In the worst case, a full power cycle is needed to regain control of the device.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-24341?
CVE-2025-24341 has a severity rating that indicates it allows a remote authenticated attacker to induce a Denial-of-Service condition.
How do I fix CVE-2025-24341?
To address CVE-2025-24341, it is recommended to apply the latest security patches provided by Bosch for ctrlX OS.
What impact does CVE-2025-24341 have on Bosch ctrlX OS?
CVE-2025-24341 can cause a Denial-of-Service condition, potentially requiring a full power cycle to regain device control.
Who is affected by CVE-2025-24341?
Users of Bosch ctrlX OS who allow remote access may be affected by CVE-2025-24341 if proper security measures aren't in place.
Can CVE-2025-24341 be exploited remotely?
Yes, CVE-2025-24341 can be exploited remotely by authenticated low-privileged attackers through crafted HTTP requests.