CVE-2023-34999
Published on: Not Yet Published
Last Modified on: 09/19/2023 09:23:00 PM UTC
Certain versions of Rts Vlink Virtual Matrix from Bosch contain the following vulnerability:
A command injection vulnerability exists in RTS VLink Virtual Matrix Software Versions v5 (< 5.7.6) and v6 (< 6.5.0) that allows an attacker to perform arbitrary code execution via the admin web interface.
- CVE-2023-34999 has been assigned by
[email protected] to track the vulnerability - currently rated as HIGH severity.
- Affected Vendor/Software:
RTS - VLink Virtual Matrix Software version < 5.7.6
- Affected Vendor/Software:
RTS - VLink Virtual Matrix Software version < 6.5.0
CVSS3 Score: 7.2 - HIGH
Attack Vector ⓘ |
Attack Complexity |
Privileges Required |
User Interaction |
---|---|---|---|
NETWORK | LOW | HIGH | NONE |
Scope | Confidentiality Impact |
Integrity Impact |
Availability Impact |
UNCHANGED | HIGH | HIGH | HIGH |
CVE References
Description | Tags ⓘ | Link |
---|---|---|
Remote Code Execution in RTS VLink Virtual Matrix | Bosch PSIRT | psirt.bosch.com text/html |
![]() |
There are currently no QIDs associated with this CVE
Known Affected Configurations (CPE V2.3)
Type | Vendor | Product | Version | Update | Edition | Language |
---|---|---|---|---|---|---|
Application | Bosch | Rts Vlink Virtual Matrix | All | All | All | All |
- cpe:2.3:a:bosch:rts_vlink_virtual_matrix:*:*:*:*:*:*:*:*:
No vendor comments have been submitted for this CVE