ZeroHour

CVE-2020-27260

CVSS 3.1
5.3 medium
EPSS
<1%p37
Published
()
Modified
Description

Innokas Yhtymä Oy Vital Signs Monitor VC150 prior to Version 1.7.15 HL7 v2.x injection vulnerabilities exist in the affected products that allow physically proximate attackers with a connected barcode reader to inject HL7 v2.x segments into specific HL7 v2.x messages via multiple expected parameters.

Vendors
innokasmedical
Products
vital signs monitor vc150 firmware
Weakness
CWE-74
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.