← Back

Onetouch Ping Firmware

onetouch_ping_firmware

Vendor: Animas • 4 CVEs

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Animas
1Onetouch Ping Firmware
May 6, 2026
Oct 5, 2016
N/A· v4
9.8 CRITICAL· v3
9.3 HIGH· v2
Johnson & Johnson Animas OneTouch Ping devices mishandle acknowledgements, which makes it easier for remote attackers to bypass authentication via a custom communication protocol.
1Animas
1Onetouch Ping Firmware
May 6, 2026
Oct 5, 2016
N/A· v4
9.8 CRITICAL· v3
9.3 HIGH· v2
Johnson & Johnson Animas OneTouch Ping devices allow remote attackers to bypass authentication via replay attacks.
1Animas
1Onetouch Ping Firmware
May 6, 2026
Oct 5, 2016
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Johnson & Johnson Animas OneTouch Ping devices do not properly generate random numbers, which makes it easier for remote attackers to spoof meters by sniffing the network and then engaging in an authentication handshake.
1Animas
1Onetouch Ping Firmware
May 6, 2026
Oct 5, 2016
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Johnson & Johnson Animas OneTouch Ping devices do not use encryption for certain data, which might allow remote attackers to obtain sensitive information by sniffing the network.