Description
The Bosch software tools AccessIPConfig.exe and AmcIpConfig.exe are used to configure certains settings in AMC2 devices. The tool allows putting a password protection on configured devices to restrict access to the configuration of an AMC2. An attacker can circumvent this protection and make unauthorized changes to configuration data on the device. An attacker can exploit this vulnerability to manipulate the device\'s configuration or make it unresponsive in the local network. The attacker needs to have access to the local network, typically even the same subnet.
Published: 2022-01-19
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2021-10769 The Bosch software tools AccessIPConfig.exe and AmcIpConfig.exe are used to configure certains settings in AMC2 devices. The tool allows putting a password protection on configured devices to restrict access to the configuration of an AMC2. An attacker can circumvent this protection and make unauthorized changes to configuration data on the device. An attacker can exploit this vulnerability to manipulate the device\'s configuration or make it unresponsive in the local network. The attacker needs to have access to the local network, typically even the same subnet.
History

No history.

Subscriptions

Bosch Access Management System Access Professional Edition Amc2 Amc2 Firmware Building Integration System
cve-icon MITRE

Status: PUBLISHED

Assigner: bosch

Published:

Updated: 2024-09-16T23:01:30.470Z

Reserved: 2021-01-12T00:00:00.000Z

Link: CVE-2021-23843

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-01-19T21:15:08.190

Modified: 2024-11-21T05:51:55.817

Link: CVE-2021-23843

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses