Medical Devices

Authentication & Access Bypass

Unauthenticated telnet service in niscomed patient Monitor

Open telnet port in niscomed patient monitoring device An issue was discovered on Niscomed Multipara Patient monitor M1000 devices.

7.8
/ 10
High
CVSS v3.1
ADVISORY ID
PS40
PUBLISHED
2022-10-03
CVE IDs
CVE-2020-15482
VENDORS
Niscomed
PUBLIC EXPLOIT
None indexed
CWE
CWE-287, CWE-319
PRODUCT
M1000 Multipara Patient Monitor
CVSS VECTOR
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Abstract blurred background with dark tones and smooth gradient waves of blue, purple, and orange hues.
Summary

Overview

Open telnet port in niscomed patient monitoring device

An issue was discovered on Niscomed Multipara Patient monitor M1000 devices. The device enables anTELNET service by default. This allows an attacker to gain root access (admin:nopasswd) of the device over the local network and steal customer data and perform a malicious activity like sending malware/ransomeware in it.

Vulnerability details

Vulnerability details

CVE-2020-15482
CWE-287, CWE-319
High | 7.8

Open telnet port in niscomed patient monitoring device An issue was discovered on Niscomed Multipara Patient monitor M1000 devices. The device enables anTELNET service by default.

Auth:
Any authenticated user (local access)
Impact:
Sensitive data disclosure, arbitrary data or code modification, denial of service
DISCLOSURE

Disclosure timeline

2020-06-22 reported to the vendor

2020-07-22 No response from the vendor and Public disclosure.

Credits

Arun Magesh