Vulnerabilities > Fresenius Kabi > Vigilant Insight > High

DATE CVE VULNERABILITY TITLE RISK
2022-01-21 CVE-2021-23236 Resource Exhaustion vulnerability in Fresenius-Kabi products
Requests may be used to interrupt the normal operation of the device.
network
low complexity
fresenius-kabi CWE-400
7.5
2022-01-21 CVE-2021-33846 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Fresenius-Kabi products
Fresenius Kabi Vigilant Software Suite (Mastermed Dashboard) version 2.0.1.3 issues authentication tokens to authenticated users that are signed with a symmetric encryption key.
network
low complexity
fresenius-kabi CWE-327
7.2
2022-01-21 CVE-2021-41835 Cleartext Transmission of Sensitive Information vulnerability in Fresenius-Kabi products
Fresenius Kabi Agilia Link + version 3.0 does not enforce transport layer encryption.
network
low complexity
fresenius-kabi CWE-319
7.5
2022-01-21 CVE-2021-44464 Use of Hard-coded Credentials vulnerability in Fresenius-Kabi products
Vigilant Software Suite (Mastermed Dashboard) version 2.0.1.3 contains service credentials likely to be common across all instances.
network
low complexity
fresenius-kabi CWE-798
8.8