Vulnerability Description
In Hamilton Medical AG,T1-Ventillator versions 2.2.3 and prior, hard-coded credentials in the ventilator allow attackers with physical access to obtain admin privileges for the device’s configuration interface.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Hamilton-Medical | Hamilton-T1 Firmware | <= 2.2.3 |
| Hamilton-Medical | Hamilton-T1 | - |
Related Weaknesses (CWE)
References
- https://us-cert.cisa.gov/ics/advisories/icsma-21-047-01Third Party AdvisoryUS Government Resource
- https://us-cert.cisa.gov/ics/advisories/icsma-21-047-01Third Party AdvisoryUS Government Resource
FAQ
What is CVE-2020-27278?
CVE-2020-27278 is a vulnerability with a CVSS score of 5.2 (MEDIUM). In Hamilton Medical AG,T1-Ventillator versions 2.2.3 and prior, hard-coded credentials in the ventilator allow attackers with physical access to obtain admin privileges for the device’s configuration ...
How severe is CVE-2020-27278?
CVE-2020-27278 has been rated MEDIUM with a CVSS base score of 5.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-27278?
Check the references section above for vendor advisories and patch information. Affected products include: Hamilton-Medical Hamilton-T1 Firmware, Hamilton-Medical Hamilton-T1.