CVE-2018-19010

UnknownEPSS 0.76%

Last modified

CVE-2018-19010 is a vulnerability of currently unknown severity. Drager Infinity Delta, Infinity Delta, all versions, Delta XL, all versions, Kappa, all version, and Infinity Explorer C700, all versions. A malformed network packet may cause the monitor to reboot. EPSS estimates a 0.76% chance of exploitation in the next 30 days.

Description

Drager Infinity Delta, Infinity Delta, all versions, Delta XL, all versions, Kappa, all version, and Infinity Explorer C700, all versions. A malformed network packet may cause the monitor to reboot. By repeatedly sending the malformed network packet, an attacker may be able to disrupt patient monitoring by causing the monitor to repeatedly reboot until it falls back to default configuration and loses network connectivity.

Metrics

EPSS Probability
0.76%

50.7th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
DraegerKappa FirmwareAll versions
DraegerInfinity Explorer C700 FirmwareAll versions
DraegerDelta Xl FirmwareAll versions
DraegerInfinity Delta FirmwareAll versions

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2018-19010?
Drager Infinity Delta, Infinity Delta, all versions, Delta XL, all versions, Kappa, all version, and Infinity Explorer C700, all versions. A malformed network packet may cause the monitor to reboot. By repeatedly sending the malformed network packet, an attacker may be able to disrupt patient monitoring by causing the monitor to repeatedly reboot until it falls back to default configuration and loses network connectivity.
How severe is CVE-2018-19010?
Severity scoring for CVE-2018-19010 is pending analysis. The EPSS model estimates a 0.76% probability of exploitation in the next 30 days.
How do I fix CVE-2018-19010?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2018-19010?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST