PT-2024-1184 · Bosch · Bosch Nexo Special Cordless Nutrunner+1

Andrea Palanca

·

Published

2024-01-08

·

Updated

2024-01-16

·

CVE-2023-48264

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Bosch Nexo cordless nutrunner and Bosch Nexo special cordless nutrunner (affected versions not specified)
Description The issue allows an unauthenticated remote attacker to perform a Denial-of-Service (DoS) attack or, possibly, obtain Remote Code Execution (RCE) via a crafted network request. It is related to a buffer overflow in the stack.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Stack Overflow

Weakness Enumeration

Related Identifiers

BDU:2024-00511
CVE-2023-48264

Affected Products

Bosch Nexo Cordless Nutrunner
Bosch Nexo Special Cordless Nutrunner