Medical Devices
Authentication & Access Bypass
Unauthenticated telnet service in niscomed patient Monitor
Open telnet port in niscomed patient monitoring device An issue was discovered on Niscomed Multipara Patient monitor M1000 devices.
.png)
Overview
Open telnet port in niscomed patient monitoring device
An issue was discovered on Niscomed Multipara Patient monitor M1000 devices. The device enables anTELNET service by default. This allows an attacker to gain root access (admin:nopasswd) of the device over the local network and steal customer data and perform a malicious activity like sending malware/ransomeware in it.
Vulnerability details
Open telnet port in niscomed patient monitoring device An issue was discovered on Niscomed Multipara Patient monitor M1000 devices. The device enables anTELNET service by default.
Disclosure timeline
2020-06-22 reported to the vendor
2020-07-22 No response from the vendor and Public disclosure.
References
2026-06-17 (NVD record)
Credits
Arun Magesh
















