CVE-2021-23852: Denial of Service (DoS) due to invalid web parameter
An authenticated attacker with administrator rights Bosch IP cameras can call an URL with an invalid parameter that causes the camera to become unresponsive for a few seconds and cause a Denial of Service (DoS).
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Bosch IP camera vulnerability?
The vulnerability ID for this Bosch IP camera vulnerability is CVE-2021-23852.
What is the severity of CVE-2021-23852?
The severity of CVE-2021-23852 is medium.
What is the affected software for CVE-2021-23852?
The affected software for CVE-2021-23852 includes Bosch Cpp4 Firmware, Bosch Cpp6 Firmware, Bosch Cpp7 Firmware, Bosch Cpp7.3 Firmware, and Bosch Cpp13 Firmware.
How can an attacker exploit CVE-2021-23852?
An authenticated attacker with administrator rights can exploit CVE-2021-23852 by calling a URL with an invalid parameter, causing the camera to become unresponsive and resulting in a Denial of Service (DoS) condition.
Is Bosch Cpp4 vulnerable to CVE-2021-23852?
No, Bosch Cpp4 is not vulnerable to CVE-2021-23852.