CVE Vulnerabilities

CVE-2019-10962

Published: Jun 13, 2019 | Modified: Oct 02, 2020
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

BD Alaris Gateway versions, 1.0.13,1.1.3 Build 10,1.1.3 MR Build 11,1.1.5, and 1.1.6, The web browser user interface on the Alaris Gateway Workstation does not prevent an attacker with knowledge of the IP address of the Alaris Gateway Workstation terminal to gain access to the status and configuration information of the device.

Affected Software

Name Vendor Start Version End Version
Alaris_gateway_workstation_firmware Bd 1.0.13 (including) 1.0.13 (including)
Alaris_gateway_workstation_firmware Bd 1.1.3-10 (including) 1.1.3-10 (including)
Alaris_gateway_workstation_firmware Bd 1.1.3-11 (including) 1.1.3-11 (including)
Alaris_gateway_workstation_firmware Bd 1.1.5 (including) 1.1.5 (including)
Alaris_gateway_workstation_firmware Bd 1.1.6 (including) 1.1.6 (including)

References