PT-2018-5613 · Boston Scientific · Zoom Latitude Prm Model 3120

Publicado

2018-05-01

·

Atualizado

2019-10-09

·

CVE-2017-14014

CVSS v2.0

2.1

Baixa

VetorAV:L/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Boston Scientific ZOOM LATITUDE PRM Model 3120
Description: The issue concerns the use of a hard-coded cryptographic key for encrypting Protected Health Information (PHI) before it is transferred to removable media. This could potentially compromise the confidentiality of the data.
Recommendations: For Boston Scientific ZOOM LATITUDE PRM Model 3120, consider updating the device to use dynamically generated cryptographic keys instead of hard-coded ones to enhance the security of PHI encryption. As a temporary workaround, restrict access to removable media to minimize the risk of unauthorized data transfer.

Correção

Using Hardcoded Credentials

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-14014

Produtos afetados

Zoom Latitude Prm Model 3120