First published: Wed Jun 09 2021(Updated: )
An authenticated attacker with administrator rights Bosch IP cameras can call an URL with an invalid parameter that causes the camera to become unresponsive for a few seconds and cause a Denial of Service (DoS).
Credit: psirt@bosch.com
Affected Software | Affected Version | How to fix |
---|---|---|
Bosch Cpp4 Firmware | ||
Bosch Cpp4 | ||
Bosch Cpp6 Firmware | ||
Bosch Cpp6 | ||
Bosch Cpp7 Firmware | ||
Bosch Cpp7 | ||
Bosch Cpp7.3 Firmware | ||
Bosch Cpp7.3 | ||
Bosch Cpp13 Firmware | ||
Bosch Cpp13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Bosch IP camera vulnerability is CVE-2021-23852.
The severity of CVE-2021-23852 is medium.
The affected software for CVE-2021-23852 includes Bosch Cpp4 Firmware, Bosch Cpp6 Firmware, Bosch Cpp7 Firmware, Bosch Cpp7.3 Firmware, and Bosch Cpp13 Firmware.
An authenticated attacker with administrator rights can exploit CVE-2021-23852 by calling a URL with an invalid parameter, causing the camera to become unresponsive and resulting in a Denial of Service (DoS) condition.
No, Bosch Cpp4 is not vulnerable to CVE-2021-23852.