Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2019-7728

19
FAUCET Score

CVE-2019-7728 describes a critical vulnerability in the Bosch Smart Camera App for Android, specifically versions prior to 1.3.1, stemming from improperly implemented TLS certificate checks. This flaw allows a remote, unauthenticated attacker to execute a man-in-the-middle (MitM) attack, potentially intercepting and manipulating sensitive data for some connections. With a CVSS score of 7.5 (HIGH), the vulnerability has a high impact on confidentiality, integrity, and availability, though it requires user interaction and high attack complexity. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
< 1.3.1CPE matchmatch criteria
cpe:2.3:a:bosch:smart_camera:*:*:*:*:*:android:*:*

CVSS Data

CVSS version used by this source: 3.0

7.5HIGH

CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H

Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.6
Impact Score
5.9
CvssVersion
3.0

Exploit Intelligence

EPSS Score
0.48%
Probability of exploitation in next 30 days
EPSS Percentile
38.4%
Percentile rank of EPSS score among Peer Group
As of 2026-07-25
Model: v2026.06.15
This CVE's current EPSS score of 0.0048 is in the 33rd percentile among its peer group of 1,570 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.2 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.6 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (7)

autodeskvendor investigatingvia llm_extracted
clastixvendor investigatingvia llm_extracted
delta_electronicsvendor investigatingvia llm_extracted
dogukanurkervendor investigatingvia llm_extracted
View patch
eximvendor investigatingvia llm_extracted
View patch
langflowvendor investigatingvia llm_extracted
mediatekvendor investigatingvia llm_extracted

Vendor Advisories (7)

delta_electronicsllm-delta_electronics-99bb7f14b3626d3fHIGH

Improper Certificate Validation in Smart Camera App for Android

Feb 22, 2019
autodeskllm-autodesk-db3f6505eb78c4f4HIGH

Improper Certificate Validation in Smart Camera App for Android

Feb 22, 2019
dogukanurkerllm-dogukanurker-efc58fcfef82f499HIGH

Improper Certificate Validation in Smart Camera App for Android

Feb 22, 2019
langflowllm-langflow-f18c2a25b3851d33HIGH

Improper Certificate Validation in Smart Camera App for Android

Feb 22, 2019
eximllm-exim-16d10f595fb59f41HIGH

Improper Certificate Validation in Smart Camera App for Android

Feb 22, 2019
clastixllm-clastix-852e892048e372a1HIGH

Improper Certificate Validation in Smart Camera App for Android

Feb 22, 2019
mediatekllm-mediatek-28a3329250d2e627HIGH

Improper Certificate Validation in Smart Camera App for Android

Feb 22, 2019

References

psirt.bosch.com / Advisory/BOSCH-2019-0202.html
Vendor Advisory