cerner records
7 published records for vendor cerner.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')3
- CWE-1188 Initialization of a Resource with an Insecure Default1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2021-36385No exploit | A SQL Injection vulnerability in Cerner Mobile Care 5.0.0 allows remote unauthenticated attackers to execute arbitrary SQL commands via a Fucerner · mobile care · CWE-89 | Critical9.8 | — | 2.7% | Aug 24, 2021 |
40Plan | CVE-2018-20053No exploit | An issue was discovered on Cerner Connectivity Engine (CCE) 4 devices.cerner · connectivity engine 4 firmware | Critical9.8 | — | 2.2% | Apr 25, 2019 |
35Monitor | CVE-2020-11674No exploit | Cerner medico 26.00 allows variable reuse, possibly causing data corruption.cerner · medico | High8.8 | — | 0.7% | Apr 29, 2020 |
35Monitor | CVE-2020-11675No exploit | Cerner medico 26.00 has a Local Buffer Overflow (issue 1 of 3).cerner · medico · CWE-120 | High8.8 | — | 0.7% | Apr 29, 2020 |
35Monitor | CVE-2020-11676No exploit | Cerner medico 26.00 has a Local Buffer Overflow (issue 2 of 3).cerner · medico · CWE-120 | High8.8 | — | 0.7% | Apr 29, 2020 |
35Monitor | CVE-2020-11677No exploit | Cerner medico 26.00 has a Local Buffer Overflow (issue 3 of 3).cerner · medico · CWE-120 | High8.8 | — | 0.7% | Apr 29, 2020 |
31Monitor | CVE-2018-20052No exploit | An issue was discovered on Cerner Connectivity Engine (CCE) 4 devices.cerner · connectivity engine 4 firmware · CWE-1188 | High7.8 | — | 0.4% | Apr 25, 2019 |
- CVE-2021-3638540Plan
A SQL Injection vulnerability in Cerner Mobile Care 5.0.0 allows remote unauthenticated attackers to execute arbitrary SQL commands via a Fu
CriticalCVSS 9.8No exploitEPSS 3%cerner · mobile careAug 24, 2021
- CVE-2018-2005340Plan
An issue was discovered on Cerner Connectivity Engine (CCE) 4 devices.
CriticalCVSS 9.8No exploitEPSS 2%cerner · connectivity engine 4 firmwareApr 25, 2019
- CVE-2020-1167435Monitor
Cerner medico 26.00 allows variable reuse, possibly causing data corruption.
HighCVSS 8.8No exploitEPSS 1%cerner · medicoApr 29, 2020
- CVE-2020-1167535Monitor
Cerner medico 26.00 has a Local Buffer Overflow (issue 1 of 3).
HighCVSS 8.8No exploitEPSS 1%cerner · medicoApr 29, 2020
- CVE-2020-1167635Monitor
Cerner medico 26.00 has a Local Buffer Overflow (issue 2 of 3).
HighCVSS 8.8No exploitEPSS 1%cerner · medicoApr 29, 2020
- CVE-2020-1167735Monitor
Cerner medico 26.00 has a Local Buffer Overflow (issue 3 of 3).
HighCVSS 8.8No exploitEPSS 1%cerner · medicoApr 29, 2020
- CVE-2018-2005231Monitor
An issue was discovered on Cerner Connectivity Engine (CCE) 4 devices.
HighCVSS 7.8No exploitEPSS 0%cerner · connectivity engine 4 firmwareApr 25, 2019