Bosch ctrlX OS Hosts Functionality Vulnerability Allowing Unintended Manipulation of the Hosts File

Vulnerability

A vulnerability exists in the Hosts functionality of the ctrlX OS web application, allowing remote authenticated (low-privileged) attackers to improperly manipulate the hosts file through crafted HTTP requests.

Impact

Exploitation of this vulnerability could lead to unauthorized modifications of the hosts file, potentially disrupting network configurations or causing misrouting of network traffic.

Remediation

Users are advised to update to the latest versions of the affected components. The update may require a device reboot. To check if the updated versions are installed, use the device's package management system.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
1.3
exploitability
5.2
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.