|
1211
|
7.6 |
HIGH
Adjacent
|
-
|
-
|
Dräger SC Monitoring devices (SC 6002XL, SC 6802XL, SC 7000, SC 8000, SC 9000 XL) contain hard-coded plaintext credentials in source code and a denial-of-service vulnerability that allows local and r…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2019-25722
|
2026-06-5 00:29 |
2026-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1212
|
4.0 |
MEDIUM
Network
|
-
|
-
|
Dräger Perseus A500 software versions 2.00 through 2.02 contains an improper input handling vulnerability that allows external attackers to cause a denial of service by sending specifically crafted n…
|
CWE-1286
Improper Validation of Syntactic Correctness of Input
|
CVE-2019-25723
|
2026-06-5 00:29 |
2026-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1213
|
6.5 |
MEDIUM
Adjacent
|
-
|
-
|
Dräger Infinity M300 patient worn monitors with software version VG2.x and earlier contain a network-based denial of service vulnerability that allows attackers with access to the hospital or Infinit…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2019-25724
|
2026-06-5 00:29 |
2026-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1214
|
8.2 |
HIGH
Local
|
-
|
-
|
Dräger CC-Vision Basic before 7.5.3 and Dräger CC-Vision E-Cal before 7.2.5.0 contain an out-of-bounds write vulnerability when loading .gdt files. A crafted .gdt file can trigger a buffer overflow d…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-4478
|
2026-06-5 00:29 |
2026-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1215
|
4.0 |
MEDIUM
Network
|
-
|
-
|
Dräger Atlan A350 software versions 1.00 through 1.01 contains an improper input handling vulnerability that allows attackers to cause a denial of service by sending specifically crafted non-Medibus-…
|
CWE-1286
Improper Validation of Syntactic Correctness of Input
|
CVE-2021-4479
|
2026-06-5 00:29 |
2026-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1216
|
8.2 |
HIGH
Local
|
-
|
-
|
Dräger Protector Software prior to version 6.4.2 contains a local privilege escalation vulnerability due to insecure file system permissions that allows local attackers to execute arbitrary code with…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2021-4480
|
2026-06-5 00:29 |
2026-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1217
|
8.2 |
HIGH
Local
|
-
|
-
|
Dräger Protector Software prior to version 6.4.2 contains a local privilege escalation vulnerability due to insecure file system permissions that allows local attackers to execute arbitrary code with…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2021-4481
|
2026-06-5 00:29 |
2026-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1218
|
8.6 |
HIGH
Network
|
-
|
-
|
Dräger Infinity Acute Care System and Standalone Infinity M540 patient monitors versions VG4.1.1, VG4.0.3, and lower (with VG4.2 partially affected) contain a network message handling vulnerability t…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2022-4992
|
2026-06-5 00:29 |
2026-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1219
|
7.5 |
HIGH
Network
|
-
|
-
|
Dräger Core 1.0.5 and Dräger M540 Converter Service 1.0.9 contain a denial of service vulnerability that allows network-adjacent attackers to trigger high CPU load by sending specially crafted, unenc…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2024-14036
|
2026-06-5 00:29 |
2026-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1220
|
6.8 |
MEDIUM
Physics
|
-
|
-
|
Dräger Zeus Infinity Empowered (Zeus IE) and Zeus RS C500 anesthesia workstations contain a local security vulnerability that allows unauthorized individuals with physical access to compromise softwa…
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2025-15653
|
2026-06-5 00:29 |
2026-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|