PT-2019-9704 · Drager · Drager Infinity Delta+3
Marc Ruef
+1
·
Published
2019-01-28
·
Updated
2019-10-09
·
CVE-2018-19012
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Drager Infinity Delta versions all
Drager Delta XL versions all
Drager Kappa versions all
Drager Infinity Explorer C700 versions all
Description
The issue allows an attacker to break out of the kiosk mode and reach the underlying operating system via a specific dialog. This enables the attacker to take control of the operating system.
Recommendations
For Drager Infinity Delta, update or apply a fix to prevent breaking out of the kiosk mode.
For Drager Delta XL, update or apply a fix to prevent breaking out of the kiosk mode.
For Drager Kappa, update or apply a fix to prevent breaking out of the kiosk mode.
For Drager Infinity Explorer C700, update or apply a fix to prevent breaking out of the kiosk mode.
Fix
Improper Privilege Management
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Drager Delta Xl
Drager Infinity Delta
Drager Infinity Explorer C700
Drager Kappa