The Bosch Ethernet switch PRA-ES8P2S with software...
Critical severity
Unreviewed
Published
Jun 24, 2022
to the GitHub Advisory Database
•
Updated Jun 29, 2023
Description
Published by the National Vulnerability Database
Jun 23, 2022
Published to the GitHub Advisory Database
Jun 24, 2022
Last updated
Jun 29, 2023
The Bosch Ethernet switch PRA-ES8P2S with software version 1.01.05 and earlier was found to be vulnerable to command injection through its diagnostics web interface. This allows execution of shell commands.
References