animas kayıtları
animas üreticisine ait 4 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-287 Improper Authentication2
- CWE-310 Cryptographic Issues1
- CWE-330 Use of Insufficiently Random Values1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
4 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2016-5086İstismar yok | Johnson & Johnson Animas OneTouch Ping devices allow remote attackers to bypass authentication via replay attacks.animas · onetouch ping firmware · CWE-287 | Kritik9,8 | — | %4,5 | 5 Eki 2016 |
40Planlayın | CVE-2016-5686İstismar yok | Johnson & Johnson Animas OneTouch Ping devices mishandle acknowledgements, which makes it easier for remote attackers to bypass authenticatianimas · onetouch ping firmware · CWE-287 | Kritik9,8 | — | %4,5 | 5 Eki 2016 |
31İzleyin | CVE-2016-5085İstismar yok | Johnson & Johnson Animas OneTouch Ping devices do not properly generate random numbers, which makes it easier for remote attackers to spoof animas · onetouch ping firmware · CWE-330 | Yüksek7,5 | — | %3,9 | 5 Eki 2016 |
31İzleyin | CVE-2016-5084İstismar yok | Johnson & Johnson Animas OneTouch Ping devices do not use encryption for certain data, which might allow remote attackers to obtain sensitivanimas · onetouch ping firmware · CWE-310 | Yüksek7,5 | — | %2,2 | 5 Eki 2016 |
- CVE-2016-508640Planlayın
Johnson & Johnson Animas OneTouch Ping devices allow remote attackers to bypass authentication via replay attacks.
KritikCVSS 9,8İstismar yokEPSS %5animas · onetouch ping firmware5 Eki 2016
- CVE-2016-568640Planlayın
Johnson & Johnson Animas OneTouch Ping devices mishandle acknowledgements, which makes it easier for remote attackers to bypass authenticati
KritikCVSS 9,8İstismar yokEPSS %5animas · onetouch ping firmware5 Eki 2016
- CVE-2016-508531İzleyin
Johnson & Johnson Animas OneTouch Ping devices do not properly generate random numbers, which makes it easier for remote attackers to spoof
YüksekCVSS 7,5İstismar yokEPSS %4animas · onetouch ping firmware5 Eki 2016
- CVE-2016-508431İzleyin
Johnson & Johnson Animas OneTouch Ping devices do not use encryption for certain data, which might allow remote attackers to obtain sensitiv
YüksekCVSS 7,5İstismar yokEPSS %2animas · onetouch ping firmware5 Eki 2016