PT-2018-5613 · Boston Scientific · Zoom Latitude Prm Model 3120
Publicado
2018-05-01
·
Atualizado
2019-10-09
·
CVE-2017-14014
CVSS v2.0
2.1
Baixa
| Vetor | AV:L/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
Boston Scientific ZOOM LATITUDE PRM Model 3120
Description:
The issue concerns the use of a hard-coded cryptographic key for encrypting Protected Health Information (PHI) before it is transferred to removable media. This could potentially compromise the confidentiality of the data.
Recommendations:
For Boston Scientific ZOOM LATITUDE PRM Model 3120, consider updating the device to use dynamically generated cryptographic keys instead of hard-coded ones to enhance the security of PHI encryption. As a temporary workaround, restrict access to removable media to minimize the risk of unauthorized data transfer.
Correção
Using Hardcoded Credentials
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Zoom Latitude Prm Model 3120