6.5
CVSSv2

CVE-2021-33846

Published: 21/01/2022 Updated: 28/01/2022
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 7.2 | Impact Score: 5.9 | Exploitability Score: 1.2
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Fresenius Kabi Vigilant Software Suite (Mastermed Dashboard) version 2.0.1.3 issues authentication tokens to authenticated users that are signed with a symmetric encryption key. An attacker in possession of the key can issue valid JWTs and impersonate arbitrary users.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fresenius-kabi agilia partner maintenance software

fresenius-kabi vigilant centerium 1.0

fresenius-kabi vigilant insight 1.0

fresenius-kabi vigilant mastermed 1.0

fresenius-kabi agilia_connect_firmware

fresenius-kabi link\\+_agilia_firmware

fresenius-kabi link\\+_agilia_firmware 3.0