VendorsBoschbosch_video_management_systemall versions
Vulnerabilities

Bosch Video Management System

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2019-6957
Buffer Overflow for Bosch Video Systems, PSIM and Access Control Systems
Published 2019-05-29 · Modified
9.8EPSS 0.020
CVE-2019-6958
Improper Access Control for Bosch Video Systems, PSIM and Access Control Systems
Published 2019-05-29 · Modified
9.8EPSS 0.015
CVE-2021-23859
Denial of Service and Authentication Bypass Vulnerability in multiple Bosch products
Published 2021-12-08 · Modified
9.1EPSS 0.010
CVE-2021-23862
Authenticated Remote Code Execution
Published 2021-12-08 · Modified
9.0EPSS 0.014
CVE-2022-32540
Information Disclosure in Operator Client application in BVMS 10.1.1, 11.0 and 11.1.0 and VIDEOJET Decoder VJD-7513 versions 10.23 and 10.30 allows man-in-the-middle attacker to compromise confidential video stream. This is only applicable for UDP encryption when target system contains cameras with platform CPP13 or CPP14 and firmware version 8.x.
Published 2022-09-30 · Modified
7.4EPSS 0.003
CVE-2021-23861
Possible Access to Debug Functions in Bosch VRM / BVMS
Published 2021-12-08 · Modified
6.5EPSS 0.008
CVE-2021-23860
Reflected Cross Site Scripting (XSS) vulnerability in Bosch VRM / BVMS
Published 2021-12-08 · Modified
6.1EPSS 0.005
CVE-2023-35867
An improper handling of a malformed API answer packets to API clients in Bosch BT software products can allow an unauthenticated attacker to cause a Denial of Service (DoS) situation. To exploit this vulnerability an attacker has to replace an existing API server e.g. through Man-in-the-Middle attacks.
Published 2023-12-18 · Modified
5.9EPSS 0.006