CVE Feed

    Dashboard / CVE / CVE-2017-12712

    CVE-2017-12712

    The authentication algorithm in Abbott Laboratories pacemakers manufactured prior to Aug 28, 2017, which involves an authentication key and time stamp, can be compromised or bypassed, which may allow a nearby attacker to issue unauthorized commands to the pacemaker via RF communications. CVSS v3 base score: 7.5, CVSS vector string: AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H. Abbott has developed a firmware update to help mitigate the identified vulnerabilities.

    Published:Apr 25, 2018
    Last Modified:Nov 21, 2024
    EPS:Apr 25, 2018
    EPSS Score:0.00737
    CVSS Score:8.8

    Affected Products

    Vendor
    Abbott
    Product
    Accent
    Vendor
    Abbott
    Product
    Accent Firmware
    Vendor
    Abbott
    Product
    Accent Mri
    Vendor
    Abbott
    Product
    Accent Mri Firmware
    Vendor
    Abbott
    Product
    Accent St
    Vendor
    Abbott
    Product
    Accent St Firmware
    Vendor
    Abbott
    Product
    Allure
    Vendor
    Abbott
    Product
    Allure Firmware
    Vendor
    Abbott
    Product
    Anthem
    Vendor
    Abbott
    Product
    Anthem Firmware
    Vendor
    Abbott
    Product
    Assurity
    Vendor
    Abbott
    Product
    Assurity Firmware
    Vendor
    Abbott
    Product
    Assurity Mri
    Vendor
    Abbott
    Product
    Assurity Mri Firmware

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High