Flow Neuroscience FL-100
Successful exploitation of this vulnerability could allow an attacker within Bluetooth range to manipulate brain stimulation parameters and override safety limits.
Live: every CISA KEV add, FDA letter, ICS-MA advisory, and 524B move for MedTech manufacturers.
One short email covering the previous week's notable items. No fluff.
16 items published in the last 30 days
Successful exploitation of this vulnerability could allow an attacker within Bluetooth range to manipulate brain stimulation parameters and override safety limits.
The Signify Philips Hue Bridge Pro firmware embeds a Mosquitto MQTT broker (v2.0.22) that listens on all network interfaces with anonymous access enabled and no firewall restriction. An attacker with access to the Bridge's network can read device data and control connected lights
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
Successful exploitation of this vulnerability could allow an attacker to use hidden commands to disable electrical safety mechanisms or modify other stimulation output settings.
Successful exploitation of these vulnerabilities could allow an attacker to access unauthorized health profile information, make changes to health information, cause a denial-of-service condition, disclose session token information, and obtain control of user accounts.
HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.11, the hidden scan command concatenates attacker-controlled Implementation Guide titles, profile titles, and source references into scan.html without escaping in
Potential Loss of imaging functionality, loss of motorized movement, or loss of data due to unauthorized Hard Disk Drives.
Potential Loss of imaging functionality, loss of motorized movement, or loss of data due to unauthorized Hard Disk Drives.
Potential Loss of imaging functionality, loss of motorized movement, or loss of data due to unauthorized Hard Disk Drives.
Successful exploitation of this vulnerability could allow an attacker to cause the application to crash if a maliciously crafted DICOM file is opened.