High severity7.5NVD Advisory· Published Aug 5, 2021· Updated Jun 17, 2026
CVE-2021-23849
CVE-2021-23849
Description
A vulnerability in the web-based interface allows an unauthenticated remote attacker to trigger actions on an affected system on behalf of another user (CSRF - Cross Site Request Forgery). This requires the victim to be tricked into clicking a malicious link or opening a malicious website while being logged in into the camera.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
23cpe:2.3:o:bosch:aviotec_firmware:7.61:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:bosch:aviotec_firmware:7.61:*:*:*:*:*:*:*
- cpe:2.3:o:bosch:aviotec_firmware:7.72:*:*:*:*:*:*:*
- cpe:2.3:o:bosch:cpp13_firmware:7.75:*:*:*:*:*:*:*
- cpe:2.3:o:bosch:cpp14_firmware:8.00:*:*:*:*:*:*:*
- cpe:2.3:o:bosch:cpp4_firmware:7.10:*:*:*:*:*:*:*
cpe:2.3:o:bosch:cpp6_firmware:7.60:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:o:bosch:cpp6_firmware:7.60:*:*:*:*:*:*:*
- cpe:2.3:o:bosch:cpp6_firmware:7.61:*:*:*:*:*:*:*
- cpe:2.3:o:bosch:cpp6_firmware:7.70:*:*:*:*:*:*:*
- cpe:2.3:o:bosch:cpp6_firmware:7.80:*:*:*:*:*:*:*
cpe:2.3:o:bosch:cpp7.3_firmware:7.60:*:*:*:*:*:*:*+ 6 more
- cpe:2.3:o:bosch:cpp7.3_firmware:7.60:*:*:*:*:*:*:*
- cpe:2.3:o:bosch:cpp7.3_firmware:7.61:*:*:*:*:*:*:*
- cpe:2.3:o:bosch:cpp7.3_firmware:7.62:*:*:*:*:*:*:*
- cpe:2.3:o:bosch:cpp7.3_firmware:7.70:*:*:*:*:*:*:*
- cpe:2.3:o:bosch:cpp7.3_firmware:7.72:*:*:*:*:*:*:*
- cpe:2.3:o:bosch:cpp7.3_firmware:7.73:*:*:*:*:*:*:*
- cpe:2.3:o:bosch:cpp7.3_firmware:7.80:*:*:*:*:*:*:*
cpe:2.3:o:bosch:cpp7_firmware:7.60:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:o:bosch:cpp7_firmware:7.60:*:*:*:*:*:*:*
- cpe:2.3:o:bosch:cpp7_firmware:7.61:*:*:*:*:*:*:*
- cpe:2.3:o:bosch:cpp7_firmware:7.70:*:*:*:*:*:*:*
- cpe:2.3:o:bosch:cpp7_firmware:7.72:*:*:*:*:*:*:*
- cpe:2.3:o:bosch:cpp7_firmware:7.80:*:*:*:*:*:*:*
- (no CPE)range: all
Patches
Vulnerability mechanics
References
1- psirt.bosch.com/security-advisories/bosch-sa-033305-bt.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.