CVE-2023-32229
Bosch
- Published
- 15 June 2023
- Last modified
- 17 June 2026
- CVSS
- 6.5 v3.1
- Severity
- medium
- EPSS
- 0.6% (46th pct)
- CISA KEV
- Not listed
- NVD status
- Modified
- Weaknesses
- CWE-1246, CWE-400
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Description
Due to an error in the software interface to the secure element chip on Bosch IP cameras of family CPP13 and CPP14, the chip can be permanently damaged when enabling the Stream security option (signing of the video stream) with option MD5, SHA-1 or SHA-256.
Exploitation
Not listed in the CISA Known Exploited Vulnerabilities catalogue as of 2026.09.04. That is an absence of confirmed public exploitation, not evidence that exploitation has not occurred. EPSS models a 0.6% probability of exploitation activity in the next 30 days.
Affected products
| Product | Vendor | Type | Versions named |
|---|---|---|---|
| Autodome 7000i | Bosch | IP camera | — |
| Autodome 7100 Ir | Bosch | IP camera | — |
| Autodome Inteox 7000i | Bosch | IP camera | — |
| Dinion 7100i Ir | Bosch | unknown | — |
| Dinion Inteox 7100i Ir | Bosch | unknown | — |
| Flexidome Indoor 5100i | Bosch | IP camera | — |
| Flexidome Indoor 5100i Ir | Bosch | IP camera | — |
| Flexidome Inteox 7100i Ir | Bosch | IP camera | — |
| Flexidome Multi 7000i | Bosch | IP camera | — |
| Flexidome Multi 7000i Ir | Bosch | IP camera | — |
| Flexidome Outdoor 5100i | Bosch | IP camera | — |
| Flexidome Outdoor 5100i Ir | Bosch | IP camera | — |
| Flexidome Panoramic 5100i | Bosch | IP camera | — |
| Flexidome Panoramic 5100i Ir | Bosch | IP camera | — |
References
Vendor advisory and patch
- https://psirt.bosch.com/security-advisories/BOSCH-SA-435698-BT.html
- https://psirt.bosch.com/security-advisories/BOSCH-SA-435698-BT.html
Record assembled from NVD, CISA KEV 2026.09.04 and FIRST EPSS 2026-09-04. Affected products are those NVD's CPE configuration names that fall inside this site's scope; a CVE may affect products outside it.