An information disclosure vulnerability was discovered in Bosch IP camera devices allowing an unauthenticated attacker to retrieve information (like capabilities) about the device itself and network settings of the device, disclosing possibly internal network settings if the device is connected to the internet.
References
Link | Resource |
---|---|
https://psirt.bosch.com/security-advisories/bosch-sa-839739-BT.html | Vendor Advisory |
https://psirt.bosch.com/security-advisories/bosch-sa-839739-BT.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
History
21 Nov 2024, 07:23
Type | Values Removed | Values Added |
---|---|---|
References | () https://psirt.bosch.com/security-advisories/bosch-sa-839739-BT.html - Vendor Advisory |
22 Dec 2023, 20:06
Type | Values Removed | Values Added |
---|---|---|
References | () https://psirt.bosch.com/security-advisories/bosch-sa-839739-BT.html - Vendor Advisory | |
First Time |
Bosch cpp7 Firmware
Bosch cpp7 Bosch cpp7.3 Bosch cpp13 Bosch cpp4 Firmware Bosch cpp14 Firmware Bosch cpp4 Bosch Bosch cpp6 Bosch cpp13 Firmware Bosch cpp7.3 Firmware Bosch cpp6 Firmware Bosch cpp14 |
|
CPE | cpe:2.3:h:bosch:cpp7:-:*:*:*:*:*:*:* cpe:2.3:h:bosch:cpp14:-:*:*:*:*:*:*:* cpe:2.3:o:bosch:cpp4_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:bosch:cpp13:-:*:*:*:*:*:*:* cpe:2.3:o:bosch:cpp13_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:bosch:cpp4:-:*:*:*:*:*:*:* cpe:2.3:h:bosch:cpp6:-:*:*:*:*:*:*:* cpe:2.3:o:bosch:cpp7.3_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:bosch:cpp7.3:-:*:*:*:*:*:*:* cpe:2.3:o:bosch:cpp6_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:bosch:cpp14_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:bosch:cpp7_firmware:*:*:*:*:*:*:*:* |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.3 |
CWE | NVD-CWE-noinfo |
18 Dec 2023, 14:05
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-12-18 13:15
Updated : 2024-11-21 07:23
NVD link : CVE-2022-41677
Mitre link : CVE-2022-41677
CVE.ORG link : CVE-2022-41677
JSON object : View
Products Affected
bosch
- cpp6
- cpp13_firmware
- cpp4_firmware
- cpp7.3_firmware
- cpp7
- cpp6_firmware
- cpp14
- cpp13
- cpp14_firmware
- cpp7.3
- cpp7_firmware
- cpp4
CWE