CVE-2020-6774

Improper Access Control in the Kiosk Mode functionality of Bosch Recording Station allows a local unauthenticated attacker to escape from the Kiosk Mode and access the underlying operating system.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:bosch:recording_station_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:bosch:recording_station:-:*:*:*:*:*:*:*

History

21 Nov 2024, 05:36

Type Values Removed Values Added
CVSS v2 : 7.2
v3 : 8.8
v2 : 7.2
v3 : 9.3
References () https://psirt.bosch.com/security-advisories/BOSCH-SA-363824-BT.html - Vendor Advisory () https://psirt.bosch.com/security-advisories/BOSCH-SA-363824-BT.html - Vendor Advisory

Information

Published : 2020-05-27 17:15

Updated : 2024-11-21 05:36


NVD link : CVE-2020-6774

Mitre link : CVE-2020-6774

CVE.ORG link : CVE-2020-6774


JSON object : View

Products Affected

bosch

  • recording_station_firmware
  • recording_station
CWE
CWE-284

Improper Access Control

CWE-668

Exposure of Resource to Wrong Sphere