In Medtronic Valleylab FT10 Energy Platform (VLFT10GEN) version 2.1.0 and lower and version 2.0.3 and lower, and Valleylab LS10 Energy Platform (VLLS10GEN—not available in the United States) version 1.20.2 and lower, the RFID security mechanism does not apply read protection, allowing for full read access of the RFID security mechanism data.
References
Link | Resource |
---|---|
https://www.us-cert.gov/ics/advisories/icsma-19-311-01 | Third Party Advisory US Government Resource |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Information
Published : 2019-11-08 12:15
Updated : 2020-10-09 06:06
NVD link : CVE-2019-13535
Mitre link : CVE-2019-13535
JSON object : View
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource
Products Affected
medtronic
- valleylab_ls10_energy_platform
- valleylab_ft10_energy_platform_firmware
- valleylab_ft10_energy_platform
- valleylab_ls10_energy_platform_firmware