Записи animas
4 опубликованных записей вендора animas.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-287 Improper Authentication2
- CWE-310 Cryptographic Issues1
- CWE-330 Use of Insufficiently Random Values1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
4 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2016-5086Эксплойта нет | Johnson & Johnson Animas OneTouch Ping devices allow remote attackers to bypass authentication via replay attacks.animas · onetouch ping firmware · CWE-287 | Критическая9,8 | — | 4,5 % | 5 окт. 2016 г. |
40В плане | CVE-2016-5686Эксплойта нет | Johnson & Johnson Animas OneTouch Ping devices mishandle acknowledgements, which makes it easier for remote attackers to bypass authenticatianimas · onetouch ping firmware · CWE-287 | Критическая9,8 | — | 4,5 % | 5 окт. 2016 г. |
31Наблюдать | CVE-2016-5085Эксплойта нет | Johnson & Johnson Animas OneTouch Ping devices do not properly generate random numbers, which makes it easier for remote attackers to spoof animas · onetouch ping firmware · CWE-330 | Высокая7,5 | — | 3,9 % | 5 окт. 2016 г. |
31Наблюдать | CVE-2016-5084Эксплойта нет | Johnson & Johnson Animas OneTouch Ping devices do not use encryption for certain data, which might allow remote attackers to obtain sensitivanimas · onetouch ping firmware · CWE-310 | Высокая7,5 | — | 2,2 % | 5 окт. 2016 г. |
- CVE-2016-508640В плане
Johnson & Johnson Animas OneTouch Ping devices allow remote attackers to bypass authentication via replay attacks.
КритическаяCVSS 9,8Эксплойта нетEPSS 5 %animas · onetouch ping firmware5 окт. 2016 г.
- CVE-2016-568640В плане
Johnson & Johnson Animas OneTouch Ping devices mishandle acknowledgements, which makes it easier for remote attackers to bypass authenticati
КритическаяCVSS 9,8Эксплойта нетEPSS 5 %animas · onetouch ping firmware5 окт. 2016 г.
- CVE-2016-508531Наблюдать
Johnson & Johnson Animas OneTouch Ping devices do not properly generate random numbers, which makes it easier for remote attackers to spoof
ВысокаяCVSS 7,5Эксплойта нетEPSS 4 %animas · onetouch ping firmware5 окт. 2016 г.
- CVE-2016-508431Наблюдать
Johnson & Johnson Animas OneTouch Ping devices do not use encryption for certain data, which might allow remote attackers to obtain sensitiv
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %animas · onetouch ping firmware5 окт. 2016 г.