CVE Tools

Boschrexroth

9 CVEs tracked since 2023. Since Oct 2023, none of them reached CISA KEV.

Boschrexroth CVEs per month

Oct 2023 to Oct 2023. Point at a month, or focus the strip and use the arrow keys.
Boschrexroth CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2023-1090

Products

The products that kept showing up in Boschrexroth's monthly top three, with their CVEs summed over those months.

  1. Ctrlx Hmi Web Panel WR2107 Firmware91 month
  2. Ctrlx Hmi Web Panel WR2110 Firmware91 month
  3. Ctrlx Hmi Web Panel WR2115 Firmware91 month

Latest CVEs

The 9 most recently published vulnerabilities affecting Boschrexroth.

  1. CVE-2023-46102The Android Client application, when enrolled to the AppHub server, connects to an MQTT broker to exchange messages and receive commands to execute on the HMI device. The protocol builds on top o...8.8
  2. CVE-2023-45851The Android Client application, when enrolled to the AppHub server,connects to an MQTT broker without enforcing any server authentication.  This issue allows an attacker to force the Android ...8.8
  3. CVE-2023-45321The Android Client application, when enrolled with the define method 1 (the user manually inserts the server ip address), use HTTP protocol to retrieve sensitive information (ip address and creden...8.3
  4. CVE-2023-45220The Android Client application, when enrolled with the define method 1(the user manually inserts the server ip address), use HTTP protocol to retrieve sensitive information (ip address and credent...8.8
  5. CVE-2023-41372The vulnerability allows an unprivileged (untrusted) third- party application to arbitrary modify the server settings of the Android Client application, inducing it to connect to an attacker - cont...7.8
  6. CVE-2023-41960The vulnerability allows an unprivileged(untrusted) third-party application to interact with a content-provider unsafely exposed by the Android Agent application, potentially modifying sensitive se...7.1
  7. CVE-2023-41255The vulnerability allows an unprivileged user with access to the subnet of the TPC-110W device to gain a root shell on the device itself abusing the lack of authentication of the ‘su’ binary ...8.8
  8. CVE-2023-43488The vulnerability allows a low privileged (untrusted) application to modify a critical system property that should be denied, in order to enable the ADB (Android Debug Bridge) protocol to be expos...7.9
  9. CVE-2023-45844The vulnerability allows a low privileged user that have access to the device when locked in Kiosk mode to install an arbitrary Android application and leverage it to have access to critical device...6.8

The record

Peak rank
#81 in Oct 2023
Busiest month shown
Oct 2023, 9 CVEs
Months with a KEV entry
0 since Oct 2023
Monthly snapshots
1 since 2023
Boschrexroth's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store