Vulnerability Description
In ApexPro Telemetry Server Versions 4.2 and prior, CARESCAPE Telemetry Server v4.2 & prior, Clinical Information Center (CIC) Versions 4.X and 5.X, CARESCAPE Central Station (CSCS) Versions 1.X, the affected products utilize a weak encryption scheme for remote desktop control, which may allow an attacker to obtain remote code execution of devices on the network.
Affected Platforms (CPE)
π»
Apexpro Telemetry Server Firmware
<= 4.2π»
Carescape Central Station Mai700 Firmware
= 1.0π»
Carescape Central Station Mas700 Firmware
= 1.0π»
Clinical Information Center Mp100d Firmware
= 4.0π»
Clinical Information Center Mp100d Firmware
= 5.0π»
Clinical Information Center Mp100r Firmware
= 4.0π»
Clinical Information Center Mp100r Firmware
= 5.0π»
Carescape Telemetry Server Mp100r Firmware
<= 4.2