CVE-2023-34999: Bosch Rts Vlink Virtual Matrix

High severity, CVSS 7.2. EPSS: 1.2% chance of exploitation in the next 30 days.

A command injection vulnerability exists in RTS VLink Virtual Matrix Software Versions v5 (< 5.7.6) and v6 (< 6.5.0) that allows an attacker to perform arbitrary code execution via the admin web interface.

Affected products

  • Bosch Rts Vlink Virtual Matrix: from 5.0.0, before 5.7.6 (fixed in 5.7.6); from 6.0.0, before 6.5.0 (fixed in 6.5.0)

Published 2023-09-18. Last modified 2026-06-17.