By executing a special command, an user with administrative rights can get access to extended debug functionality on the VRM allowing an impact on integrity or availability of the installed software. This issue also affects installations of the DIVAR IP and BVMS with VRM installed.
References
Link | Resource |
---|---|
https://psirt.bosch.com/security-advisories/bosch-sa-043434-bt.html | Vendor Advisory |
https://psirt.bosch.com/security-advisories/bosch-sa-043434-bt.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 05:51
Type | Values Removed | Values Added |
---|---|---|
References | () https://psirt.bosch.com/security-advisories/bosch-sa-043434-bt.html - Vendor Advisory |
30 Aug 2022, 18:18
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-Other |
14 Dec 2021, 16:42
Type | Values Removed | Values Added |
---|---|---|
References | (CONFIRM) https://psirt.bosch.com/security-advisories/bosch-sa-043434-bt.html - Vendor Advisory | |
CWE | CWE-77 | |
CVSS |
v2 : v3 : |
v2 : 5.5
v3 : 6.5 |
CPE | cpe:2.3:a:bosch:bosch_video_management_system:10.1:*:*:*:*:*:*:* cpe:2.3:o:bosch:divar_ip_7000_firmware:-:*:*:*:*:*:*:* cpe:2.3:a:bosch:bosch_video_management_system:11.0:*:*:*:*:*:*:* cpe:2.3:a:bosch:video_recording_manager:*:*:*:*:*:*:*:* cpe:2.3:a:bosch:bosch_video_management_system:*:*:*:*:*:*:*:* cpe:2.3:o:bosch:divar_ip_5000_firmware:-:*:*:*:*:*:*:* |
08 Dec 2021, 22:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2021-12-08 22:15
Updated : 2024-11-21 05:51
NVD link : CVE-2021-23861
Mitre link : CVE-2021-23861
CVE.ORG link : CVE-2021-23861
JSON object : View
Products Affected
bosch
- bosch_video_management_system
- divar_ip_5000_firmware
- video_recording_manager
- divar_ip_7000_firmware
CWE