CVE-2025-48861

Publication date

2025-08-14 09:07:24

Family

bosch

State

PUBLISHED

Description

A vulnerability in the Task API endpoint of the ctrlX OS setup mechanism allowed a remote, unauthenticated attacker to access and extract internal application data, including potential debug logs and the version of installed apps.