CVE Database
/

CVE-2020-27264

Back to search

CVE-2020-27264

Published: Jan 19, 2021

Modified: Aug 4, 2024

PUBLISHED

Description

In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, the communication protocol of the insulin pump and its AnyDana-i and AnyDana-A mobile applications use deterministic keys, which allows unauthenticated, physically proximate attackers to brute-force the keys via Bluetooth Low Energy.

VendorProductVersions

n/a

SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A

affected
Dana Diabecare RS, AnyDana-i, AnyDana-A All versions prior to 3.0

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now