CVE-2018-18984 Vulnerability Details
/
/
/
CVE-2018-18984 Metadata Quick Info
CVE Published: 14/12/2018 |
CVE Updated: 05/08/2024 |
CVE Year: 2018
Source: icscert |
Vendor: n/a |
Product: Medtronic CareLink 2090 Programmer CareLink 9790 Programmer 29901 Encore Programmer
Status : PUBLISHED
CVE-2018-18984 Description
Medtronic CareLink 2090 Programmer CareLink 9790 Programmer 29901 Encore Programmer, all versions, The affected products do not encrypt or do not sufficiently encrypt the following sensitive information while at rest PII and PHI.
Metrics
CVSS Version: 3.1 |
Base Score: n/a
Vector: n/a
l➤ Exploitability Metrics:
Attack Vector (AV)*
Attack Complexity (AC)*
Privileges Required (PR)*
User Interaction (UI)*
Scope (S)*
l➤ Impact Metrics:
Confidentiality Impact (C)*
Integrity Impact (I)*
Availability Impact (A)*
Weakness Enumeration (CWE)
CWE-ID: CWE-311
CWE Name: MISSING ENCRPTION OF SENSITIVE DATA CWE-311
Source: n/a
Common Attack Pattern Enumeration and Classification (CAPEC)
CAPEC-ID:
CAPEC Description:
Source: NVD (National Vulnerability Database).