ZeroHour

Vulnerabilities

7 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2021-38392
+3 in the same advisory: …38396 …38400 …38394
A skilled attacker with physical access to the affected device can gain access to the hard disk drive of the device to change the telemetry region and could use

A skilled attacker with physical access to the affected device can gain access to the hard disk drive of the device to change the telemetry region and could use this setting to interrogate or program an implantable device in any region in the world.

NVD description · AI analysis pending
7.6
group max
<1%
  • bostonscientific zoom latitude pogrammer\/recorder\/monitor 3120 firmware
CVE-2021-38398
The affected device uses off-the-shelf software components that contain unpatched vulnerabilities.

The affected device uses off-the-shelf software components that contain unpatched vulnerabilities. A malicious attacker with physical access to the affected device could exploit these vulnerabilities.

NVD description · AI analysis pending
6.8<1%
  • bostonscientific zoom latitude programming system model 3120 firmware
  • bostonscientific zoom latitude pogrammer\/recorder\/monitor 3120 firmware
CVE-2017-14014
+1 in the same advisory: …14012
Boston Scientific ZOOM LATITUDE PRM Model 3120 uses a hard-coded cryptographic key to encrypt PHI prior to having it transferred to removable media.

Boston Scientific ZOOM LATITUDE PRM Model 3120 uses a hard-coded cryptographic key to encrypt PHI prior to having it transferred to removable media. CVSS v3 base score: 4.6; CVSS vector string: AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N.

NVD description · AI analysis pending
4.6<1%
  • bostonscientific zoom latitude prm 3120 firmware