An issue was discovered in several Bosch IP cameras for firmware versions 6.32 and higher. A malicious client could potentially succeed in the unauthorized execution of code on the device via the network interface.
Metrics
- CVSS v4.0 N/A
- CVSS v3.1 N/A
- CVSS v3.0 9.8 Critical
- CVSS v2 10.0 Critical
- KEV no
- EPSS 0.00895
- SSVC no
No CVSS v4.0
No CVSS v3.1
Attack Vector Network
Attack Complexity Low
Privileges Required None
Scope Unchanged
Confidentiality Impact High
Integrity Impact High
Availability Impact High
User Interaction None
Access Vector Network
Access Complexity Low
Authentication None
Confidentiality Impact Complete
Integrity Impact Complete
Availability Impact Complete
This CVE is not in the KEV list.
The EPSS score is 0.00895.
Key SSVC decision points have not yet been added.
Affected Vendors & Products
| Vendors | Products |
|---|---|
|
Bosch
Subscribe
|
Autodome Ip 4000 Hd
Subscribe
Autodome Ip 4000i
Subscribe
Autodome Ip 5000 Hd
Subscribe
Autodome Ip 5000 Ir
Subscribe
Autodome Ip 5000i
Subscribe
Autodome Ip 7000
Subscribe
Autodome Ip Starlight 5000i
Subscribe
Autodome Ip Starlight 7000i
Subscribe
Aviotec Ip Starlight 8000
Subscribe
Common Product Platform 4 Firmware
Subscribe
Common Product Platform 6 Firmware
Subscribe
Common Product Platform 7.3 Firmware
Subscribe
Common Product Platform 7 Firmware
Subscribe
Dinion Hd 1080p
Subscribe
Dinion Hd 1080p Hdr
Subscribe
Dinion Hd 720p
Subscribe
Dinion Imager 9000 Hd
Subscribe
Dinion Ip 4000 Hd
Subscribe
Dinion Ip 5000 Hd
Subscribe
Dinion Ip 5000 Mp
Subscribe
Dinion Ip Bullet 4000
Subscribe
Dinion Ip Bullet 4000i
Subscribe
Dinion Ip Bullet 5000
Subscribe
Dinion Ip Bullet 5000i
Subscribe
Dinion Ip Bullet 6000i
Subscribe
Dinion Ip Starlight 6000
Subscribe
Dinion Ip Starlight 7000
Subscribe
Dinion Ip Starlight 7000 Hd
Subscribe
Dinion Ip Starlight 8000 12mp
Subscribe
Dinion Ip Thermal 8000
Subscribe
Dinion Ip Ultra 8000 12mp
Subscribe
Extegra Ip Dynamic 9000
Subscribe
Extegra Ip Starlight 9000
Subscribe
Flexidome Corner 9000 Mp
Subscribe
Flexidome Hd 1080p
Subscribe
Flexidome Hd 1080p Hdr
Subscribe
Flexidome Hd 720p
Subscribe
Flexidome Ip 4000i
Subscribe
Flexidome Ip 5000i
Subscribe
Flexidome Ip Indoor 4000 Hd
Subscribe
Flexidome Ip Indoor 4000 Ir
Subscribe
Flexidome Ip Indoor 5000 Hd
Subscribe
Flexidome Ip Indoor 5000 Mp
Subscribe
Flexidome Ip Micro 2000 Hd
Subscribe
Flexidome Ip Micro 2000 Ip
Subscribe
Flexidome Ip Micro 5000 Hd
Subscribe
Flexidome Ip Micro 5000 Mp
Subscribe
Flexidome Ip Outdoor 4000 Hd
Subscribe
Flexidome Ip Outdoor 4000 Ir
Subscribe
Flexidome Ip Outdoor 5000 Hd
Subscribe
Flexidome Ip Outdoor 5000 Mp
Subscribe
Flexidome Ip Panoramic 6000 12mp 180
Subscribe
Flexidome Ip Panoramic 6000 12mp 180 Iva
Subscribe
Flexidome Ip Panoramic 6000 12mp 360
Subscribe
Flexidome Ip Panoramic 6000 12mp 360 Iva
Subscribe
Flexidome Ip Panoramic 7000 12mp 180
Subscribe
Flexidome Ip Panoramic 7000 12mp 180 Iva
Subscribe
Flexidome Ip Panoramic 7000 12mp 360
Subscribe
Flexidome Ip Panoramic 7000 12mp 360 Iva
Subscribe
Flexidome Ip Panormic 5000
Subscribe
Flexidome Ip Starlight 6000
Subscribe
Flexidome Ip Starlight 7000
Subscribe
Ip 2000
Subscribe
Ip 2000 Hd
Subscribe
Ip Bullet 4000 Hd
Subscribe
Ip Bullet 5000 Hd
Subscribe
Mic Ip Dynamic 7000
Subscribe
Mic Ip Fusion 9000i
Subscribe
Mic Ip Starlight 7000
Subscribe
Mic Ip Starlight 7000i
Subscribe
Tinyon Ip 2000
Subscribe
Vandal-proof Flexidome Hd 1080p
Subscribe
Vandal-proof Flexidome Hd 1080p Hdr
Subscribe
Vandal-proof Flexidome Hd 720p
Subscribe
|
Configuration 1 [-]
| AND |
|
Configuration 2 [-]
| AND |
|
Configuration 3 [-]
| AND |
|
Configuration 4 [-]
| AND |
|
No data.
No data.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-10754 | An issue was discovered in several Bosch IP cameras for firmware versions 6.32 and higher. A malicious client could potentially succeed in the unauthorized execution of code on the device via the network interface. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T11:23:09.040Z
Reserved: 2018-11-06T00:00:00
Link: CVE-2018-19036
No data.
Status : Modified
Published: 2018-12-17T19:29:00.673
Modified: 2024-11-21T03:57:11.760
Link: CVE-2018-19036
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD