Vulnerabilities > Fresenius Kabi

DATE CVE VULNERABILITY TITLE RISK
2022-01-21 CVE-2021-41835 Cleartext Transmission of Sensitive Information vulnerability in Fresenius-Kabi products
Fresenius Kabi Agilia Link + version 3.0 does not enforce transport layer encryption.
network
low complexity
fresenius-kabi CWE-319
5.0
2022-01-21 CVE-2021-43355 Improper Authentication vulnerability in Fresenius-Kabi products
Fresenius Kabi Vigilant Software Suite (Mastermed Dashboard) version 2.0.1.3 allows user input to be validated on the client side without authentication by the server.
network
low complexity
fresenius-kabi CWE-287
7.5
2022-01-21 CVE-2021-44464 Use of Hard-coded Credentials vulnerability in Fresenius-Kabi products
Vigilant Software Suite (Mastermed Dashboard) version 2.0.1.3 contains service credentials likely to be common across all instances.
network
low complexity
fresenius-kabi CWE-798
6.5