Bosch
Bosch Cpp4 Firmware: vulnerabilities and CVEs
Bosch Cpp4 Firmware has 5 published vulnerabilities, 0 of them in the last 12 months. 1 are rated critical and 0 are listed by CISA as actively exploited.
CVEs5
Last 12 months0
Critical1
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-41677 | Medium (5.3) | 0.60% | — | Dec 18, 2023 | An information disclosure vulnerability was discovered in Bosch IP camera devices allowing an unauthenticated attacker to retrieve information (like capabilities) about the device itself and network settings of the… |
| CVE-2021-23849 | High (8.8) | 0.49% | — | Aug 5, 2021 | A vulnerability in the web-based interface allows an unauthenticated remote attacker to trigger actions on an affected system on behalf of another user (CSRF - Cross Site Request Forgery). This requires the victim to be… |
| CVE-2021-23853 | Critical (9.8) | 0.86% | — | Jun 9, 2021 | In Bosch IP cameras, improper validation of the HTTP header allows an attacker to inject arbitrary HTTP headers through crafted URLs. |
| CVE-2021-23852 | Medium (4.9) | 0.83% | — | Jun 9, 2021 | An authenticated attacker with administrator rights Bosch IP cameras can call an URL with an invalid parameter that causes the camera to become unresponsive for a few seconds and cause a Denial of Service (DoS). |
| CVE-2021-23848 | Medium (6.1) | 0.56% | — | Jun 9, 2021 | An error in the URL handler Bosch IP cameras may lead to a reflected cross site scripting (XSS) in the web-based interface. An attacker with knowledge of the camera address can send a crafted link to a user, which will… |