CVE-2020-27266
- EPSS 0.07%
- Veröffentlicht 19.01.2021 22:15:12
- Zuletzt bearbeitet 21.11.2024 05:20:58
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a client-side control vulnerability in the insulin pump and its AnyDana-i and AnyDana-A mobile applications allows physically proximate attackers to bypass user authentication chec...
CVE-2020-27268
- EPSS 0.07%
- Veröffentlicht 19.01.2021 22:15:12
- Zuletzt bearbeitet 21.11.2024 05:20:58
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a client-side control vulnerability in the insulin pump and its AnyDana-i and AnyDana-A mobile applications allows physically proximate attackers to bypass checks for default PINs ...
CVE-2020-27269
- EPSS 0.09%
- Veröffentlicht 19.01.2021 22:15:12
- Zuletzt bearbeitet 21.11.2024 05:20:58
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, the communication protocol of the insulin pump and its AnyDana-i and AnyDana-A mobile applications lacks replay protection measures, which allows unauthenticated, physically proxim...
CVE-2020-27264
- EPSS 0.1%
- Veröffentlicht 19.01.2021 21:15:14
- Zuletzt bearbeitet 21.11.2024 05:20:57
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, the communication protocol of the insulin pump and its AnyDana-i and AnyDana-A mobile applications use deterministic keys, which allows unauthenticated, physically proximate attack...
CVE-2020-27256
- EPSS 0.05%
- Veröffentlicht 19.01.2021 21:15:13
- Zuletzt bearbeitet 21.11.2024 05:20:57
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a hard-coded physician PIN in the physician menu of the insulin pump allows attackers with physical access to change insulin therapy settings.
CVE-2020-27270
- EPSS 0.05%
- Veröffentlicht 19.01.2021 17:15:12
- Zuletzt bearbeitet 21.11.2024 05:20:58
SOOIL Developments CoLtd DiabecareRS, AnyDana-i ,AnyDana-A, communication protocol of the insulin pump & AnyDana-i,AnyDana-A mobile apps doesnt use adequate measures to protect encryption keys in transit which allows unauthenticated physically proxim...
CVE-2020-27272
- EPSS 0.09%
- Veröffentlicht 19.01.2021 17:15:12
- Zuletzt bearbeitet 21.11.2024 05:20:58
SOOIL Developments CoLtd DiabecareRS, AnyDana-i, AnyDana-A, The communication protocol of the insulin pump and AnyDana-i,AnyDana-A mobile apps doesn't use adequate measures to authenticate the pump before exchanging keys, which allows unauthenticated...
CVE-2020-27276
- EPSS 0.08%
- Veröffentlicht 19.01.2021 17:15:12
- Zuletzt bearbeitet 21.11.2024 05:20:58
SOOIL Developments Co Ltd DiabecareRS,AnyDana-i & AnyDana-A, the communication protocol of the insulin pump and its AnyDana-i & AnyDana-A mobile apps doesn't use adequate measures to authenticate the communicating entities before exchanging keys, whi...