PT-2021-22106 · Boston Scientific · Zoom Latitude+1

Christian Dresen

+3

·

Published

2021-10-04

·

Updated

2022-10-27

·

CVE-2021-38392

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions No specific software or versions are mentioned in the provided descriptions.
Description A skilled attacker with physical access to the affected device can gain access to the hard disk drive of the device to change the telemetry region. This setting could then be used to interrogate or program an implantable device in any region in the world.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2021-38392

Affected Products

Zoom Latitude
Zoom Latitude Pogrammer/Recorder/Monitor 3120 Firmware