CVE-2019-13531
Summary
| CVE | CVE-2019-13531 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-11-08 20:15:00 UTC |
| Updated | 2020-10-09 13:06:00 UTC |
| Description | In Medtronic Valleylab FT10 Energy Platform (VLFT10GEN) version 2.1.0 and lower and version 2.0.3 and lower, and Valleylab LS10 Energy Platform (VLLS10GEN—not available in the United States) version 1.20.2 and lower, the RFID security mechanism used for authentication between the FT10/LS10 Energy Platform and instruments can be bypassed, allowing for inauthentic instruments to connect to the generator. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Medtronic | Valleylab Ft10 Energy Platform | - | All | All | All |
| Hardware | Medtronic | Valleylab Ft10 Energy Platform | - | All | All | All |
| Operating System | Medtronic | Valleylab Ft10 Energy Platform Firmware | 2.0.3 | All | All | All |
| Operating System | Medtronic | Valleylab Ft10 Energy Platform Firmware | 2.1.0 | All | All | All |
| Operating System | Medtronic | Valleylab Ft10 Energy Platform Firmware | 2.0.3 | All | All | All |
| Operating System | Medtronic | Valleylab Ft10 Energy Platform Firmware | 2.1.0 | All | All | All |
| Hardware | Medtronic | Valleylab Ls10 Energy Platform | - | All | All | All |
| Hardware | Medtronic | Valleylab Ls10 Energy Platform | - | All | All | All |
| Operating System | Medtronic | Valleylab Ls10 Energy Platform Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Medtronic Valleylab FT10 and LS10 | CISA | MISC | www.us-cert.gov | Third Party Advisory, US Government Resource |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.