Description
An error in the URL handler Bosch IP cameras may lead to a reflected cross site scripting (XSS) in the web-based interface. An attacker with knowledge of the camera address can send a crafted link to a user, which will execute javascript code in the context of the user.
Published: 2021-06-09
Score: 8.3 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2021-10774 An error in the URL handler Bosch IP cameras may lead to a reflected cross site scripting (XSS) in the web-based interface. An attacker with knowledge of the camera address can send a crafted link to a user, which will execute javascript code in the context of the user.
History

No history.

Subscriptions

Bosch Cpp13 Cpp13 Firmware Cpp4 Cpp4 Firmware Cpp6 Cpp6 Firmware Cpp7 Cpp7.3 Cpp7.3 Firmware Cpp7 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: bosch

Published:

Updated: 2024-09-16T16:27:51.671Z

Reserved: 2021-01-12T00:00:00.000Z

Link: CVE-2021-23848

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-06-09T15:15:08.250

Modified: 2024-11-21T05:51:56.363

Link: CVE-2021-23848

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses