Show plain JSON{"configurations": [{"nodes": [{"cpeMatch": [{"criteria": "cpe:2.3:o:bosch:cpp14_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "89F54BC8-9DAE-418E-BAB3-EF5D1B5FAD8A", "versionEndIncluding": "8.80", "vulnerable": true}], "negate": false, "operator": "OR"}, {"cpeMatch": [{"criteria": "cpe:2.3:h:bosch:cpp14:-:*:*:*:*:*:*:*", "matchCriteriaId": "B7872B92-4708-4522-BA8F-5BE941D169AC", "vulnerable": false}], "negate": false, "operator": "OR"}], "operator": "AND"}, {"nodes": [{"cpeMatch": [{"criteria": "cpe:2.3:o:bosch:cpp13_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "F5AD0A0E-EBD7-4A76-8C84-7A023320E0BA", "versionEndIncluding": "8.48", "vulnerable": true}], "negate": false, "operator": "OR"}, {"cpeMatch": [{"criteria": "cpe:2.3:h:bosch:cpp13:-:*:*:*:*:*:*:*", "matchCriteriaId": "80149FF9-3C6D-4C80-8257-CEB2BE8B0DCA", "vulnerable": false}], "negate": false, "operator": "OR"}], "operator": "AND"}, {"nodes": [{"cpeMatch": [{"criteria": "cpe:2.3:o:bosch:cpp7.3_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "F370A3C7-01AC-46F8-A682-FFA2286B7445", "versionEndIncluding": "7.86", "vulnerable": true}], "negate": false, "operator": "OR"}, {"cpeMatch": [{"criteria": "cpe:2.3:h:bosch:cpp7.3:-:*:*:*:*:*:*:*", "matchCriteriaId": "5B97B95A-8143-4766-9F10-87E19AED22C6", "vulnerable": false}], "negate": false, "operator": "OR"}], "operator": "AND"}, {"nodes": [{"cpeMatch": [{"criteria": "cpe:2.3:o:bosch:cpp7_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "065122F8-B39D-4DA5-BB1F-942DE35AB61E", "versionEndIncluding": "7.86", "vulnerable": true}], "negate": false, "operator": "OR"}, {"cpeMatch": [{"criteria": "cpe:2.3:h:bosch:cpp7:-:*:*:*:*:*:*:*", "matchCriteriaId": "E8339008-8889-47B0-9416-CCC6CE75D277", "vulnerable": false}], "negate": false, "operator": "OR"}], "operator": "AND"}, {"nodes": [{"cpeMatch": [{"criteria": "cpe:2.3:o:bosch:cpp6_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "BFC2D04C-E319-47A8-8DA5-CA98C37852A8", "versionEndIncluding": "7.86", "vulnerable": true}], "negate": false, "operator": "OR"}, {"cpeMatch": [{"criteria": "cpe:2.3:h:bosch:cpp6:-:*:*:*:*:*:*:*", "matchCriteriaId": "27B65C05-69F5-4048-BCBE-DA0D53EF9AFE", "vulnerable": false}], "negate": false, "operator": "OR"}], "operator": "AND"}, {"nodes": [{"cpeMatch": [{"criteria": "cpe:2.3:o:bosch:cpp4_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "D04376BD-C049-44E6-A6D6-27BE389154C8", "versionEndIncluding": "7.10", "vulnerable": true}], "negate": false, "operator": "OR"}, {"cpeMatch": [{"criteria": "cpe:2.3:h:bosch:cpp4:-:*:*:*:*:*:*:*", "matchCriteriaId": "1F4FA4F9-6BDC-44C4-A151-16ECF7926A83", "vulnerable": false}], "negate": false, "operator": "OR"}], "operator": "AND"}], "descriptions": [{"lang": "en", "value": "An information disclosure vulnerability was discovered in Bosch IP camera devices allowing an unauthenticated attacker to retrieve information (like capabilities) about the device itself and network settings of the device, disclosing possibly internal network settings if the device is connected to the internet."}, {"lang": "es", "value": "Se descubri\u00f3 una vulnerabilidad de divulgaci\u00f3n de informaci\u00f3n en los dispositivos de c\u00e1mara IP de Bosch que permite a un atacante no autenticado recuperar informaci\u00f3n (como capacidades) sobre el dispositivo en s\u00ed y la configuraci\u00f3n de red del dispositivo, revelando posiblemente configuraciones de red internas si el dispositivo est\u00e1 conectado a Internet."}], "id": "CVE-2022-41677", "lastModified": "2024-11-21T07:23:37.380", "metrics": {"cvssMetricV31": [{"cvssData": {"attackComplexity": "LOW", "attackVector": "NETWORK", "availabilityImpact": "NONE", "baseScore": 5.3, "baseSeverity": "MEDIUM", "confidentialityImpact": "LOW", "integrityImpact": "NONE", "privilegesRequired": "NONE", "scope": "UNCHANGED", "userInteraction": "NONE", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N", "version": "3.1"}, "exploitabilityScore": 3.9, "impactScore": 1.4, "source": "psirt@bosch.com", "type": "Secondary"}, {"cvssData": {"attackComplexity": "LOW", "attackVector": "NETWORK", "availabilityImpact": "NONE", "baseScore": 5.3, "baseSeverity": "MEDIUM", "confidentialityImpact": "LOW", "integrityImpact": "NONE", "privilegesRequired": "NONE", "scope": "UNCHANGED", "userInteraction": "NONE", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N", "version": "3.1"}, "exploitabilityScore": 3.9, "impactScore": 1.4, "source": "nvd@nist.gov", "type": "Primary"}]}, "published": "2023-12-18T13:15:06.570", "references": [{"source": "psirt@bosch.com", "tags": ["Vendor Advisory"], "url": "https://psirt.bosch.com/security-advisories/bosch-sa-839739-BT.html"}, {"source": "af854a3a-2127-422b-91ae-364da2661108", "tags": ["Vendor Advisory"], "url": "https://psirt.bosch.com/security-advisories/bosch-sa-839739-BT.html"}], "sourceIdentifier": "psirt@bosch.com", "vulnStatus": "Modified", "weaknesses": [{"description": [{"lang": "en", "value": "CWE-284"}], "source": "psirt@bosch.com", "type": "Secondary"}, {"description": [{"lang": "en", "value": "NVD-CWE-noinfo"}], "source": "nvd@nist.gov", "type": "Primary"}]}