CVE-2020-6780: Bosch Fsm-2500 Firmware
Medium severity, CVSS 4.9. EPSS: 0.6% chance of exploitation in the next 30 days.
Use of Password Hash With Insufficient Computational Effort in the database of Bosch FSM-2500 server and Bosch FSM-5000 server up to and including version 5.2 allows a remote attacker with admin privileges to dump the credentials of other users and possibly recover their plain-text passwords by brute-forcing the MD5 hash.
Affected products
Published 2021-01-26. Last modified 2026-06-17.