CVE Published: 18/12/2023 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: bosch |
Vendor: Bosch |
Product: Camera Firmware Status : PUBLISHED
CVE-2023-39509 Description
A command injection vulnerability exists in Bosch IP cameras that allows an authenticated user with administrative rights to run arbitrary commands on the OS of the camera.
Metrics
CVSS Version: 3.1 |
Base Score: 7.2 HIGH Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H