Vulnerabilities > Hospira > High

DATE CVE VULNERABILITY TITLE RISK
2016-01-22 CVE-2015-7909 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Hospira Communication Engine and Lifecare PCA Infusion System
Stack-based buffer overflow in Hospira Communication Engine (CE) before 1.2 in LifeCare PCA Infusion System 5.07, Plum A+ Infusion System 13.40, and Plum A+3 Infusion System 13.40 allows remote attackers to cause a denial of service or possibly have unspecified other impact via traffic on TCP port 5000.
network
low complexity
hospira CWE-119
7.5
2015-07-06 CVE-2015-3958 Data Processing Errors vulnerability in Hospira Lifecare Pcainfusion Firmware 5.0
Hospira LifeCare PCA Infusion System 5.0 and earlier, and possibly other versions, allows remote attackers to cause a denial of service (forced manual reboot) via a flood of TCP packets.
network
low complexity
hospira CWE-19
7.8