"value":"Improper Authorization in SSH server in Bosch VMS 11.0, 11.1.0, and 11.1.1 allows a remote authenticated user to access resources within the trusted internal network via a port forwarding request."
}
]
},
"problemtype":{
"problemtype_data":[
{
"description":[
{
"lang":"eng",
"value":"CWE-200 Exposure of Sensitive Information to an Unauthorized Actor",
"cweId":"CWE-200"
}
]
}
]
},
"affects":{
"vendor":{
"vendor_data":[
{
"vendor_name":"Bosch",
"product":{
"product_data":[
{
"product_name":"BVMS",
"version":{
"version_data":[
{
"version_affected":"<=",
"version_name":"7.5",
"version_value":"11.1.1"
}
]
}
},
{
"product_name":"BVMS Viewer",
"version":{
"version_data":[
{
"version_affected":"<=",
"version_name":"7.5",
"version_value":"11.1.1"
}
]
}
},
{
"product_name":"Bosch DIVAR IP 3000",
"version":{
"version_data":[
{
"version_affected":"<=",
"version_name":"7.5",
"version_value":"8.0"
}
]
}
},
{
"product_name":"Bosch DIVAR IP 7000 R1",
"version":{
"version_data":[
{
"version_affected":"<=",
"version_name":"7.5",
"version_value":"8.0"
}
]
}
},
{
"product_name":"Bosch DIVAR IP 7000 R2",
"version":{
"version_data":[
{
"version_affected":"<=",
"version_name":"7.5",
"version_value":"11.1.1"
}
]
}
},
{
"product_name":"Bosch DIVAR IP all-in-one 7000 R3",