CVE-2018-7518
Summary
| CVE | CVE-2018-7518 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-05-24 20:29:00 UTC |
| Updated | 2019-10-09 23:42:00 UTC |
| Description | In TotalAlert Web Application in BeaconMedaes Scroll Medical Air Systems prior to v4107600010.23, an attacker with network access to the integrated web server could retrieve default or user defined credentials stored and transmitted in an insecure manner. |
Risk And Classification
Problem Types: CWE-522
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Beaconmedaes | Scroll Medical Air Systems | - | All | All | All |
| Hardware | Beaconmedaes | Scroll Medical Air Systems | - | All | All | All |
| Operating System | Beaconmedaes | Scroll Medical Air Systems Firmware | All | All | All | All |
| Operating System | Beaconmedaes | Scroll Medical Air Systems Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| BeaconMedaes TotalAlert Scroll Medical Air Systems | CISA | MISC | ics-cert.us-cert.gov | Mitigation, Third Party Advisory, US Government Resource |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.