Back to Database
Status published
High
CVE-2023-39509
A command injection vulnerability exists in Bosch IP cameras that...
Vulnerability Description
A command injection vulnerability exists in Bosch IP cameras that allows an authenticated user with administrative rights to run arbitrary commands on the OS of the camera.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-39509
Credits & Attribution
No credits recorded in the NVD database.
More from Bosch
View All →CVE-2025-32063
Enabling SSH server on Infotainment ECU
Medium
6.8
CVE-2025-32062
Stack Buffer Overflow leading to RCE in Bluetooth stack of Infotainment ECU
High
8.8
CVE-2025-32061
Stack Buffer Overflow leading to RCE in Bluetooth stack of Infotainment ECU
High
8.8
CVE-2025-32060
Absence of Kernel Module Signature Verification on Linux System of Infotainment ECU
Medium
6.7
CVE-2025-32059
Stack Buffer Overflow leading to RCE in Bluetooth stack of Infotainment ECU
High
8.8
Affected Vendor
Bosch
View all reports →Affected Software
Camera Firmware
Vulnerable Versions:
0, 8.20
Timeline
Official Publish:
December 18th, 2023
Last Modified:
August 2nd, 2024
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H