In Hamilton Medical AG,T1-Ventillator versions 2.2.3 and prior, an information disclosure vulnerability in the ventilator allows attackers with physical access to the configuration interface's logs to get valid checksums for tampered configuration files.
References
Link | Resource |
---|---|
https://us-cert.cisa.gov/ics/advisories/icsma-21-047-01 | Third Party Advisory US Government Resource |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2021-03-15 15:15
Updated : 2021-03-22 09:02
NVD link : CVE-2020-27290
Mitre link : CVE-2020-27290
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
hamilton-medical
- hamilton-t1
- hamilton-t1_firmware