Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2020-6767

19
FAUCET Score

CVE-2020-6767 describes a path traversal vulnerability in the Bosch Video Management System (BVMS) FileTransferService, impacting BVMS, BVMS Viewer, and associated DIVAR IP products across multiple versions. An authenticated remote attacker can exploit this to read arbitrary files from the Central Server. Rated Medium severity (CVSS 6.5), the attack is network-based with low complexity, requiring prior authentication to achieve high confidentiality impact. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
<= 7.5CPE matchmatch criteria
cpe:2.3:a:bosch:video_management_system_viewer:*:*:*:*:*:*:*:*
>= 8.0, <= 8.0.329CPE matchmatch criteria
cpe:2.3:a:bosch:video_management_system_viewer:*:*:*:*:*:*:*:*
>= 9.0, <= 9.0.0.827CPE matchmatch criteria
cpe:2.3:a:bosch:video_management_system_viewer:*:*:*:*:*:*:*:*
>= 10.0, <= 10.0.0.1225CPE matchmatch criteria
cpe:2.3:a:bosch:video_management_system_viewer:*:*:*:*:*:*:*:*
<= 7.5CPE matchmatch criteria
cpe:2.3:a:bosch:video_management_system:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.7HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
HIGH
Integrity Impact
NONE
Availability Impact
NONE
Exploitability Score
3.1
Impact Score
4.0
CvssVersion
3.1

Exploit Intelligence

EPSS Score
1.31%
Probability of exploitation in next 30 days
EPSS Percentile
67.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0131 is in the 81st percentile among its peer group of 21,974 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (5)

amazonvendor investigatingvia llm_extracted
apollographqlvendor investigatingvia llm_extracted
dfinityvendor investigatingvia llm_extracted
fleetdmvendor investigatingvia llm_extracted
mathworksvendor investigatingvia llm_extracted

Vendor Advisories (5)

fleetdmllm-fleetdm-ca279cc869a1b5aeHIGH

Path Traversal in Bosch Video Management System

Jan 29, 2020
amazonllm-amazon-d576b7e58cc13c1eHIGH

Path Traversal in Bosch Video Management System

Jan 29, 2020
apollographqlllm-apollographql-4250dc6da5658291HIGH

Path Traversal in Bosch Video Management System

Jan 29, 2020
dfinityllm-dfinity-39be9d356a25c1ddHIGH

Path Traversal in Bosch Video Management System

Jan 29, 2020
mathworksllm-mathworks-c34709fe1a3409f3HIGH

Path Traversal in Bosch Video Management System

Jan 29, 2020

References

media.boschsecurity.com / fs/media/pb/security_advisories/bosch-sa-381489-bt_cve-2020-6767_securityadvisory_bvms_pathtraversal.pdf
PatchVendor Advisory
psirt.bosch.com / security-advisories/BOSCH-SA-381489-BT.html
Broken LinkVendor Advisory