CVE-2023-48262 is a critical vulnerability affecting Bosch products, allowing an unauthenticated remote attacker to achieve Denial-of-Service or potentially Remote Code Execution through a crafted network request. With a CVSS score of 9.8, this vulnerability presents a severe risk due to its network-based attack vector and low attack complexity, enabling complete compromise of confidentiality, integrity, and availability. Despite its high severity, there is currently no public exploit code available (Metasploit, Nuclei, ExploitDB), and it is not listed on the KEV catalog, indicating no active exploitation. Community discussion and media coverage are also minimal, suggesting low public awareness at this time.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 1000, <= 1500-sp2CPE matchmatch criteria | cpe:2.3:o:bosch:nexo-os:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Multiple vulnerabilities in Nexo cordless nutrunner
Jan 8, 2024Multiple vulnerabilities in Nexo cordless nutrunner
Jan 8, 2024Multiple vulnerabilities in Nexo cordless nutrunner
Jan 8, 2024Multiple vulnerabilities in Nexo cordless nutrunner
Jan 8, 2024