CVE-2023-28175
—CVSS 3.1
7.7 high
EPSS
<1%p38
Published
()
Modified
Description
Improper Authorization in SSH server in Bosch VMS 11.0, 11.1.0, and 11.1.1 allows a remote authenticated user to access resources within the trusted internal network via a port forwarding request.
- Vendors
- bosch
- Products
- video management system, video management system viewer, divar ip 3000 firmware, divar ip 6000 firmware, divar ip 4000 firmware, divar ip 5000 firmware, divar ip 7000 r2 firmware, divar ip 7000 firmware, divar ip 7000 r3 firmware
- Weakness
- CWE-200, CWE-863
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.