Vulnerabilities > Biotronik

DATE CVE VULNERABILITY TITLE RISK
2020-06-29 CVE-2019-18256 Insufficiently Protected Credentials vulnerability in Biotronik products
BIOTRONIK CardioMessenger II, The affected products use individual per-device credentials that are stored in a recoverable format.
local
low complexity
biotronik CWE-522
2.1
2020-06-29 CVE-2019-18254 Cleartext Storage of Sensitive Information vulnerability in Biotronik products
BIOTRONIK CardioMessenger II, The affected products do not encrypt sensitive information while at rest.
local
low complexity
biotronik CWE-312
2.1
2020-06-29 CVE-2019-18252 Improper Authentication vulnerability in Biotronik products
BIOTRONIK CardioMessenger II, The affected products allow credential reuse for multiple authentication purposes.
low complexity
biotronik CWE-287
3.3
2020-06-29 CVE-2019-18248 Cleartext Transmission of Sensitive Information vulnerability in Biotronik products
BIOTRONIK CardioMessenger II, The affected products transmit credentials in clear-text prior to switching to an encrypted communication channel.
low complexity
biotronik CWE-319
3.3
2020-06-29 CVE-2019-18246 Improper Authentication vulnerability in Biotronik products
BIOTRONIK CardioMessenger II, The affected products do not properly enforce mutual authentication with the BIOTRONIK Remote Communication infrastructure.
low complexity
biotronik CWE-287
3.3