NA

CVE-2023-35867

Published: 18/12/2023 Updated: 22/12/2023
CVSS v3 Base Score: 5.9 | Impact Score: 3.6 | Exploitability Score: 2.2
VMScore: 0

Vulnerability Summary

An improper handling of a malformed API answer packets to API clients in Bosch BT software products can allow an unauthenticated malicious user to cause a Denial of Service (DoS) situation. To exploit this vulnerability an attacker has to replace an existing API server e.g. through Man-in-the-Middle attacks.

Vulnerable Product Search on Vulmon Subscribe to Product

bosch building integration system video engine

bosch bosch video management system

bosch video management system viewer

bosch configuration manager

bosch divar ip 7000 r2 firmware

bosch divar ip all-in-one 4000 firmware

bosch divar ip all-in-one 5000 firmware

bosch divar ip all-in-one 6000 firmware

bosch divar ip all-in-one 7000 firmware

bosch divar ip all-in-one 7000 r3 firmware

bosch intelligent insights

bosch onvif camera event driver tool

bosch project assistant

bosch video security client