Lucene search

K
cvelistBDCVELIST:CVE-2023-30565
HistoryJul 13, 2023 - 7:06 p.m.

CVE-2023-30565 CQI Data Sniffing

2023-07-1319:06:18
CWE-924
CWE-319
BD
www.cve.org
cve-2023-30565
cqi data sniffing
systems manager
cqi reporter application
infusion data
attacker

3.5 Low

CVSS3

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

4.4 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.0%

An insecure connection between Systems Manager and CQI Reporter application could expose infusion data to an attacker.

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "CQI Reporter",
    "vendor": "Becton Dickinson & Co",
    "versions": [
      {
        "lessThanOrEqual": "10.17",
        "status": "affected",
        "version": "0",
        "versionType": "custom"
      }
    ]
  }
]

3.5 Low

CVSS3

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

4.4 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.0%

Related for CVELIST:CVE-2023-30565