CVE-2020-27270
EUVD-2020-1978319.01.2021, 17:15
SOOIL Developments CoLtd DiabecareRS, AnyDana-i ,AnyDana-A, communication protocol of the insulin pump & AnyDana-i,AnyDana-A mobile apps doesnt use adequate measures to protect encryption keys in transit which allows unauthenticated physically proximate attacker to sniff keys via (BLE).Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| sooil | anydana-a_firmware | 𝑥 < 3.0 |
| sooil | anydana-i_firmware | 𝑥 < 3.0 |
| sooil | diabecare_rs_firmware | 𝑥 < 3.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration