CVE-2021-23236

Requests may be used to interrupt the normal operation of the device. When exploited, Fresenius Kabi Agilia Link+ version 3.0 must be rebooted via a hard reset triggered by pressing a button on the rack system.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
icscertCNA
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 42%
VendorProductVersion
fresenius-kabiagilia_partner_maintenance_software
𝑥
≤ 3.3.0
fresenius-kabivigilant_centerium
1.0
fresenius-kabivigilant_insight
1.0
fresenius-kabivigilant_mastermed
1.0
fresenius-kabilink\+_agilia_firmware
𝑥
< 3.0
fresenius-kabilink\+_agilia_firmware
3.0
fresenius-kabilink\+_agilia_firmware
3.0:d15
𝑥
= Vulnerable software versions