Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2020-6768

19
FAUCET Score

CVE-2020-6768 describes a path traversal vulnerability in Bosch Video Management System (BVMS) NoTouch deployment, allowing unauthenticated remote attackers to read arbitrary files from the Central Server. This affects various versions of BVMS, BVMS Viewer, and associated DIVAR IP products. With a CVSS score of 7.5 (HIGH), the vulnerability has a network attack vector, low attack complexity, and high confidentiality impact, with no integrity or availability impact. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
<= 7.5CPE matchmatch criteria
cpe:2.3:a:bosch:video_management_system_viewer:*:*:*:*:*:*:*:*
>= 8.0, <= 8.0.329CPE matchmatch criteria
cpe:2.3:a:bosch:video_management_system_viewer:*:*:*:*:*:*:*:*
>= 9.0, <= 9.0.0.827CPE matchmatch criteria
cpe:2.3:a:bosch:video_management_system_viewer:*:*:*:*:*:*:*:*
>= 10.0, <= 10.0.0.1225CPE matchmatch criteria
cpe:2.3:a:bosch:video_management_system_viewer:*:*:*:*:*:*:*:*
<= 7.5CPE matchmatch criteria
cpe:2.3:a:bosch:video_management_system:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

8.6HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
HIGH
Integrity Impact
NONE
Availability Impact
NONE
Exploitability Score
3.9
Impact Score
4.0
CvssVersion
3.1

Exploit Intelligence

EPSS Score
1.68%
Probability of exploitation in next 30 days
EPSS Percentile
74.5%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0168 is in the 57th percentile among its peer group of 51,551 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (5)

amazonvendor investigatingvia llm_extracted
apollographqlvendor investigatingvia llm_extracted
dfinityvendor investigatingvia llm_extracted
fleetdmvendor investigatingvia llm_extracted
mathworksvendor investigatingvia llm_extracted

Vendor Advisories (5)

fleetdmllm-fleetdm-ed3a3aa7d38089b0HIGH

Path Traversal in Bosch Video Management System NoTouch deployment

Jan 29, 2020
amazonllm-amazon-1e3fddb015569850HIGH

Path Traversal in Bosch Video Management System NoTouch deployment

Jan 29, 2020
apollographqlllm-apollographql-65085650c8140a9dHIGH

Path Traversal in Bosch Video Management System NoTouch deployment

Jan 29, 2020
dfinityllm-dfinity-b52a49c0d1b39d67HIGH

Path Traversal in Bosch Video Management System NoTouch deployment

Jan 29, 2020
mathworksllm-mathworks-1d5c490b99549642HIGH

Path Traversal in Bosch Video Management System NoTouch deployment

Jan 29, 2020

References

psirt.bosch.com / security-advisories/bosch-sa-815013-bt.html
PatchVendor Advisory