CVE-2023-32230

An improper handling of a malformed API request to an API server in Bosch BT software products can allow an unauthenticated attacker to cause a Denial of Service (DoS) situation.
Configurations

Configuration 1 (hide)

cpe:2.3:a:bosch:monitor_wall:*:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:bosch:videojet_decoder_7513_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:bosch:videojet_decoder_7513:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:bosch:videojet_decoder_7523_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:bosch:videojet_decoder_7523:-:*:*:*:*:*:*:*

Configuration 4 (hide)

cpe:2.3:a:bosch:video_recording_manager:*:*:*:*:*:*:*:*

Configuration 5 (hide)

OR cpe:2.3:a:bosch:video_streaming_gateway:*:*:*:*:*:*:*:*
cpe:2.3:a:bosch:video_streaming_gateway:*:*:*:*:*:*:*:*

History

22 Dec 2023, 19:58

Type Values Removed Values Added
CWE NVD-CWE-Other
References () https://psirt.bosch.com/security-advisories/BOSCH-SA-092656-BT.html - () https://psirt.bosch.com/security-advisories/BOSCH-SA-092656-BT.html - Vendor Advisory
CPE cpe:2.3:a:bosch:video_streaming_gateway:*:*:*:*:*:*:*:*
cpe:2.3:h:bosch:videojet_decoder_7513:-:*:*:*:*:*:*:*
cpe:2.3:o:bosch:videojet_decoder_7513_firmware:*:*:*:*:*:*:*:*
cpe:2.3:a:bosch:video_recording_manager:*:*:*:*:*:*:*:*
cpe:2.3:h:bosch:videojet_decoder_7523:-:*:*:*:*:*:*:*
cpe:2.3:a:bosch:monitor_wall:*:*:*:*:*:*:*:*
cpe:2.3:o:bosch:videojet_decoder_7523_firmware:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

18 Dec 2023, 14:05

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-18 13:15

Updated : 2024-02-05 00:22


NVD link : CVE-2023-32230

Mitre link : CVE-2023-32230

CVE.ORG link : CVE-2023-32230


JSON object : View

Products Affected

bosch

  • video_streaming_gateway
  • videojet_decoder_7513_firmware
  • videojet_decoder_7523
  • videojet_decoder_7523_firmware
  • videojet_decoder_7513
  • monitor_wall
  • video_recording_manager
CWE
NVD-CWE-Other CWE-703

Improper Check or Handling of Exceptional Conditions