A crafted configuration packet sent by an authenticated administrative user can be used to execute arbitrary commands in system context. This issue also affects installations of the VRM, DIVAR IP, BVMS with VRM installed, the VIDEOJET decoder (VJD-7513 and VJD-8000).

Project Subscriptions

Vendors Products
Bosch Video Management System Subscribe
Divar Ip 5000 Firmware Subscribe
Divar Ip 7000 Firmware Subscribe
Video Recording Manager Subscribe
Videojet Decoder 7513 Subscribe
Videojet Decoder 7513 Firmware Subscribe
Videojet Decoder 8000 Subscribe
Videojet Decoder 8000 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2021-10788 A crafted configuration packet sent by an authenticated administrative user can be used to execute arbitrary commands in system context. This issue also affects installations of the VRM, DIVAR IP, BVMS with VRM installed, the VIDEOJET decoder (VJD-7513 and VJD-8000).
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: bosch

Published:

Updated: 2024-09-16T19:30:25.389Z

Reserved: 2021-01-12T00:00:00

Link: CVE-2021-23862

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-12-08T22:15:08.607

Modified: 2024-11-21T05:51:58.453

Link: CVE-2021-23862

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses