5
CVSSv2

CVE-2021-41835

Published: 21/01/2022 Updated: 27/01/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Fresenius Kabi Agilia Link + version 3.0 does not enforce transport layer encryption. Therefore, transmitted data may be sent in cleartext. Transport layer encryption is offered on Port TCP/443, but the affected service does not perform an automated redirect from the unencrypted service on Port TCP/80 to the encrypted service.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fresenius-kabi agilia partner maintenance software

fresenius-kabi vigilant centerium 1.0

fresenius-kabi vigilant insight 1.0

fresenius-kabi vigilant mastermed 1.0

fresenius-kabi agilia_connect

fresenius-kabi link\\+_agilia_firmware

fresenius-kabi link\\+_agilia_firmware 3.0