Vulnerabilities
7 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2021-38392 | A skilled attacker with physical access to the affected device can gain access to the hard disk drive of the device to change the telemetry region and could use A skilled attacker with physical access to the affected device can gain access to the hard disk drive of the device to change the telemetry region and could use this setting to interrogate or program an implantable device in any region in the world. NVD description · AI analysis pending | 7.6 group max | <1% |
| — | ||
| CVE-2021-38398 | The affected device uses off-the-shelf software components that contain unpatched vulnerabilities. The affected device uses off-the-shelf software components that contain unpatched vulnerabilities. A malicious attacker with physical access to the affected device could exploit these vulnerabilities. NVD description · AI analysis pending | 6.8 | <1% |
| — | ||
| CVE-2017-14014 +1 in the same advisory: …14012 | Boston Scientific ZOOM LATITUDE PRM Model 3120 uses a hard-coded cryptographic key to encrypt PHI prior to having it transferred to removable media. Boston Scientific ZOOM LATITUDE PRM Model 3120 uses a hard-coded cryptographic key to encrypt PHI prior to having it transferred to removable media. CVSS v3 base score: 4.6; CVSS vector string: AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N. NVD description · AI analysis pending | 4.6 | <1% |
| — |