4.3
CVSSv2

CVE-2021-23860

Published: 08/12/2021 Updated: 14/12/2021
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

An error in a page handler of the VRM may lead to a reflected cross site scripting (XSS) in the web-based interface. To exploit this vulnerability an attack must be able to modify the HTTP header that is sent. This issue also affects installations of the DIVAR IP and BVMS with VRM installed.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

bosch bosch video management system

bosch bosch video management system 10.1

bosch bosch video management system 11.0

bosch video recording manager