CVE-2021-23848
09.06.2021, 15:15
An error in the URL handler Bosch IP cameras may lead to a reflected cross site scripting (XSS) in the web-based interface. An attacker with knowledge of the camera address can send a crafted link to a user, which will execute javascript code in the context of the user.
Vendor | Product | Version |
---|---|---|
bosch | cpp4_firmware | - |
bosch | cpp6_firmware | - |
bosch | cpp7_firmware | - |
bosch | cpp7.3_firmware | - |
bosch | cpp13_firmware | - |
𝑥
= Vulnerable software versions