ZeroHour

CVE-2022-41677

CVSS 3.1
5.3 medium
EPSS
<1%p46
Published
()
Modified
Description

An information disclosure vulnerability was discovered in Bosch IP camera devices allowing an unauthenticated attacker to retrieve information (like capabilities) about the device itself and network settings of the device, disclosing possibly internal network settings if the device is connected to the internet.

Vendors
bosch
Products
cpp14 firmware, cpp13 firmware, cpp7.3 firmware, cpp7 firmware, cpp6 firmware, cpp4 firmware
Weakness
CWE-284
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.