CVE-2015-3965

Hospira Symbiq Infusion System 3.13 and earlier allows remote authenticated users to trigger "unanticipated operations" by leveraging "elevated privileges" for an unspecified call to an incorrectly exposed function.
References
Link Resource
https://ics-cert.us-cert.gov/advisories/ICSA-15-174-01 US Government Resource Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:pfizer:symbiq_infusion_system_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:pfizer:symbiq_infusion_system:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2019-03-23 20:29

Updated : 2023-12-10 12:59


NVD link : CVE-2015-3965

Mitre link : CVE-2015-3965

CVE.ORG link : CVE-2015-3965


JSON object : View

Products Affected

pfizer

  • symbiq_infusion_system_firmware
  • symbiq_infusion_system
CWE
CWE-264

Permissions, Privileges, and Access Controls