CVE-2021-23854
09.06.2021, 15:15
An error in the handling of a page parameter in Bosch IP cameras may lead to a reflected cross site scripting (XSS) in the web-based interface. This issue only affects versions 7.7x and 7.6x. All other versions are not affected.
| Vendor | Product | Version |
|---|---|---|
| bosch | cpp6_firmware | 7.62 |
| bosch | cpp6_firmware | 7.70 |
| bosch | cpp6_firmware | 7.72 |
| bosch | cpp7_firmware | 7.62 |
| bosch | cpp7_firmware | 7.70 |
| bosch | cpp7_firmware | 7.72 |
| bosch | cpp7.3_firmware | 7.62 |
| bosch | cpp7.3_firmware | 7.70 |
| bosch | cpp7.3_firmware | 7.72 |
| bosch | cpp13_firmware | 7.75 |
| bosch | cpp13_firmware | 7.76 |
𝑥
= Vulnerable software versions