CVE-2023-48260: SQL Injection
The vulnerability allows a remote unauthenticated attacker to read arbitrary content of the results database via a crafted HTTP request.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-48260?
CVE-2023-48260 is classified as a medium severity vulnerability due to its potential for unauthorized data access.
How do I fix CVE-2023-48260?
To mitigate CVE-2023-48260, ensure that your Bosch Nexo operating system is updated to the latest version beyond 1500-sp2.
Who is affected by CVE-2023-48260?
CVE-2023-48260 affects users of Bosch Nexo operating systems within the specified version range from 1000 to 1500-sp2.
What type of attack does CVE-2023-48260 facilitate?
CVE-2023-48260 allows a remote unauthenticated attacker to perform unauthorized reads of database content via crafted HTTP requests.
Is any specific Bosch Nexo product affected by CVE-2023-48260?
Yes, CVE-2023-48260 specifically impacts the Bosch Nexo operating system and associated cordless nutrunners operating within the vulnerable version range.