|
208111
|
9.8 |
CRITICAL
Network
|
eclipse
|
openj9
|
In Eclipse OpenJ9 up to and including version 0.23, there is potential for a stack-based buffer overflow when the virtual machine or JNI natives are converting from UTF-8 characters to platform encod…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-27221
|
2024-11-21 14:20 |
2021-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208112
|
5.7 |
MEDIUM
Adjacent
|
sooil
|
anydana-a_firmware anydana-i_firmware diabecare_rs_firmware
|
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, the communication protocol of the insulin pump and its AnyDana-i and AnyDana-A mobile applications lacks replay protection measur…
|
CWE-294
Authentication Bypass by Capture-replay
|
CVE-2020-27269
|
2024-11-21 14:20 |
2021-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208113
|
6.5 |
MEDIUM
Adjacent
|
sooil
|
anydana-a_firmware anydana-i_firmware diabecare_rs_firmware
|
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a client-side control vulnerability in the insulin pump and its AnyDana-i and AnyDana-A mobile applications allows physically pro…
|
CWE-669
Incorrect Resource Transfer Between Spheres
|
CVE-2020-27268
|
2024-11-21 14:20 |
2021-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208114
|
6.5 |
MEDIUM
Adjacent
|
sooil
|
anydana-a_firmware anydana-i_firmware diabecare_rs_firmware
|
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a client-side control vulnerability in the insulin pump and its AnyDana-i and AnyDana-A mobile applications allows physically pro…
|
CWE-287
Improper Authentication
|
CVE-2020-27266
|
2024-11-21 14:20 |
2021-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208115
|
8.8 |
HIGH
Adjacent
|
sooil
|
anydana-a_firmware anydana-i_firmware diabecare_rs_firmware
|
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, the communication protocol of the insulin pump and its AnyDana-i and AnyDana-A mobile applications use deterministic keys, which …
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2020-27264
|
2024-11-21 14:20 |
2021-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208116
|
6.5 |
MEDIUM
Adjacent
|
sooil
|
anydana-i anydana-a dana_diabecare_rs_firmware
|
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, an information disclosure vulnerability in the communication protocol of the insulin pump and its AnyDana-i and AnyDana-A mobile …
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2020-27258
|
2024-11-21 14:20 |
2021-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208117
|
6.8 |
MEDIUM
Physics
|
sooil
|
anydana-a_firmware anydana-i_firmware diabecare_rs_firmware
|
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a hard-coded physician PIN in the physician menu of the insulin pump allows attackers with physical access to change insulin ther…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-27256
|
2024-11-21 14:20 |
2021-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208118
|
5.7 |
MEDIUM
Adjacent
|
sooil
|
anydana-a_firmware anydana-i_firmware diabecare_rs_firmware
|
SOOIL Developments Co Ltd DiabecareRS,AnyDana-i & AnyDana-A, the communication protocol of the insulin pump and its AnyDana-i & AnyDana-A mobile apps doesn't use adequate measures to authenticate the…
|
CWE-290
Authentication Bypass by Spoofing
|
CVE-2020-27276
|
2024-11-21 14:20 |
2021-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208119
|
5.7 |
MEDIUM
Adjacent
|
sooil
|
anydana-a_firmware anydana-i_firmware diabecare_rs_firmware
|
SOOIL Developments CoLtd DiabecareRS, AnyDana-i, AnyDana-A, The communication protocol of the insulin pump and AnyDana-i,AnyDana-A mobile apps doesn't use adequate measures to authenticate the pump b…
|
NVD-CWE-noinfo
|
CVE-2020-27272
|
2024-11-21 14:20 |
2021-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208120
|
5.7 |
MEDIUM
Adjacent
|
sooil
|
anydana-a_firmware anydana-i_firmware diabecare_rs_firmware
|
SOOIL Developments CoLtd DiabecareRS, AnyDana-i ,AnyDana-A, communication protocol of the insulin pump & AnyDana-i,AnyDana-A mobile apps doesnt use adequate measures to protect encryption keys in tra…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2020-27270
|
2024-11-21 14:20 |
2021-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|