CVE-2020-25166

An improper verification of the cryptographic signature of firmware updates of the B. Braun Melsungen AG SpaceCom Version L81/U61 and earlier, and the Data module compactplus Versions A10 and A11 allows attackers to generate valid firmware updates with arbitrary content that can be used to tamper with devices.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:bbraun:datamodule_compactplus:a10:*:*:*:*:*:*:*
cpe:2.3:o:bbraun:datamodule_compactplus:a11:*:*:*:*:*:*:*
cpe:2.3:h:bbraun:datamodule_compactplus:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:bbraun:spacecom:*:*:*:*:*:*:*:*
cpe:2.3:h:bbraun:spacecom:-:*:*:*:*:*:*:*

Information

Published : 2022-04-14 14:15

Updated : 2022-04-21 12:29


NVD link : CVE-2020-25166

Mitre link : CVE-2020-25166


JSON object : View

CWE
CWE-347

Improper Verification of Cryptographic Signature

Advertisement

dedicated server usa

Products Affected

bbraun

  • spacecom
  • datamodule_compactplus