10

CVE-2018-19036

An issue was discovered in several Bosch IP cameras for firmware versions 6.32 and higher. A malicious client could potentially succeed in the unauthorized execution of code on the device via the network interface.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
BoschCommon Product Platform 4 Firmware Version >= 6.32
   BoschAutodome Ip 4000 Hd Version-
   BoschAutodome Ip 5000 Hd Version-
   BoschAutodome Ip 5000 Ir Version-
   BoschAutodome Ip 7000 Version-
   BoschDinion Hd 1080p Version-
   BoschDinion Hd 1080p Hdr Version-
   BoschDinion Hd 720p Version-
   BoschDinion Imager 9000 Hd Version-
   BoschDinion Ip 4000 Hd Version-
   BoschDinion Ip 5000 Hd Version-
   BoschDinion Ip 5000 Mp Version-
   BoschDinion Ip Bullet 4000 Version-
   BoschDinion Ip Bullet 5000 Version-
   BoschDinion Ip Starlight 7000 Hd Version-
   BoschExtegra Ip Dynamic 9000 Version-
   BoschExtegra Ip Starlight 9000 Version-
   BoschFlexidome Corner 9000 Mp Version-
   BoschFlexidome Hd 1080p Version-
   BoschFlexidome Hd 1080p Hdr Version-
   BoschFlexidome Hd 720p Version-
   BoschFlexidome Ip Indoor 4000 Hd Version-
   BoschFlexidome Ip Indoor 4000 Ir Version-
   BoschFlexidome Ip Indoor 5000 Hd Version-
   BoschFlexidome Ip Indoor 5000 Mp Version-
   BoschFlexidome Ip Micro 2000 Hd Version-
   BoschFlexidome Ip Micro 2000 Ip Version-
   BoschFlexidome Ip Micro 5000 Hd Version-
   BoschFlexidome Ip Micro 5000 Mp Version-
   BoschFlexidome Ip Outdoor 4000 Hd Version-
   BoschFlexidome Ip Outdoor 4000 Ir Version-
   BoschFlexidome Ip Outdoor 5000 Hd Version-
   BoschFlexidome Ip Outdoor 5000 Mp Version-
   BoschFlexidome Ip Panormic 5000 Version-
   BoschIp 2000 Version-
   BoschIp 2000 Hd Version-
   BoschIp Bullet 4000 Hd Version-
   BoschIp Bullet 5000 Hd Version-
   BoschMic Ip Dynamic 7000 Version-
   BoschMic Ip Starlight 7000 Version-
   BoschTinyon Ip 2000 Version-
   BoschVandal-proof Flexidome Hd 1080p Version-
   BoschVandal-proof Flexidome Hd 1080p Hdr Version-
   BoschVandal-proof Flexidome Hd 720p Version-
BoschCommon Product Platform 7 Firmware Version >= 6.32
   BoschDinion Ip Starlight 6000 Version-
   BoschDinion Ip Starlight 7000 Version-
   BoschDinion Ip Thermal 8000 Version-
   BoschFlexidome Ip Starlight 6000 Version-
   BoschFlexidome Ip Starlight 7000 Version-
BoschCommon Product Platform 7.3 Firmware Version >= 6.32
   BoschAutodome Ip 4000i Version-
   BoschAutodome Ip 5000i Version-
   BoschAutodome Ip Starlight 5000i Version-
   BoschAutodome Ip Starlight 7000i Version-
   BoschDinion Ip Bullet 4000i Version-
   BoschDinion Ip Bullet 5000i Version-
   BoschDinion Ip Bullet 6000i Version-
   BoschFlexidome Ip 4000i Version-
   BoschFlexidome Ip 5000i Version-
   BoschMic Ip Fusion 9000i Version-
   BoschMic Ip Starlight 7000i Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.9% 0.734
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.