PT-2024-1183 · Bosch · Bosch Nexo Special Cordless Nutrunner+1

Andrea Palanca

·

Published

2024-01-08

·

Updated

2024-01-16

·

CVE-2023-48263

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Bosch Nexo cordless nutrunner and Bosch Nexo special cordless nutrunner (affected versions not specified)
Description The issue allows an unauthenticated remote attacker to perform a Denial-of-Service (DoS) attack or, possibly, obtain Remote Code Execution (RCE) via a crafted network request. This is related to a buffer overflow in dynamic memory.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2024-00510
CVE-2023-48263

Affected Products

Bosch Nexo Cordless Nutrunner
Bosch Nexo Special Cordless Nutrunner