A Missing Authentication in Critical Function in Bosch IP cameras allows an unauthenticated remote attacker to extract sensitive information or change settings of the camera by sending crafted requests to the device. Only devices of the CPP6, CPP7 and CPP7.3 family with firmware 7.70, 7.72, and 7.80 prior to B128 are affected by this vulnerability. Versions 7.62 or lower and INTEOX cameras are not affected.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: bosch
Published: 2021-06-09T14:19:47.260870Z
Updated: 2024-09-17T02:46:39.127Z
Reserved: 2021-01-12T00:00:00
Link: CVE-2021-23847
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-06-09T15:15:08.187
Modified: 2024-11-21T05:51:56.220
Link: CVE-2021-23847
Redhat
No data.