PT-2018-5442 · Bmc Medical · Bmc Medical Luna Cpap Machines
Published
2018-04-17
·
Updated
2019-10-09
·
CVE-2017-12701
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions:
BMC Medical Luna CPAP Machines versions prior to July 1, 2017
Description:
The issue is related to improper input validation, which can be exploited by an authenticated attacker to crash the CPAP's Wi-Fi module, resulting in a denial-of-service condition.
Recommendations:
For versions prior to July 1, 2017, consider restricting access to the Wi-Fi module to minimize the risk of exploitation until a fix is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Bmc Medical Luna Cpap Machines