← Back

Zoll

zoll

8 CVEs • 2 products

Products (2)

Click to collapse
Toggle

CVEs (8)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Zoll
1Defibrillator Dashboard
Nov 21, 2024
Jun 16, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
ZOLL Defibrillator Dashboard, v prior to 2.2,The application allows users to store their passwords in a recoverable format, which could allow an attacker to retrieve the credentials from the web browser.
1Zoll
1Defibrillator Dashboard
Nov 21, 2024
Jun 16, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
ZOLL Defibrillator Dashboard, v prior to 2.2,The affected products contain insecure filesystem permissions that could allow a lower privilege user to escalate privileges to an administrative level user.
1Zoll
1Defibrillator Dashboard
Nov 21, 2024
Jun 16, 2021
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
ZOLL Defibrillator Dashboard, v prior to 2.2,The affected product’s web application could allow a low privilege user to inject parameters to contain malicious scripts to be executed by higher privilege users.
1Zoll
1Defibrillator Dashboard
Nov 21, 2024
Jun 16, 2021
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
ZOLL Defibrillator Dashboard, v prior to 2.2, The web application allows a non-administrative user to upload a malicious file. This file could allow an attacker to remotely execute arbitrary commands.
1Zoll
1Defibrillator Dashboard
Nov 21, 2024
Jun 16, 2021
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
ZOLL Defibrillator Dashboard, v prior to 2.2, The affected products contain credentials stored in plaintext. This could allow an attacker to gain access to sensitive information.
1Zoll
1Defibrillator Dashboard
Nov 21, 2024
Jun 16, 2021
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
ZOLL Defibrillator Dashboard, v prior to 2.2, The affected products utilize an encryption key in the data exchange process, which is hardcoded. This could allow an attacker to gain access to sensitive information.
1Zoll
1Monitor/defibrillator
May 6, 2026
Aug 12, 2014
N/A· v4
N/A· v3
4.9 MEDIUM· v2
ZOLL Defibrillator / Monitor X Series has a default (1) supervisor password and (2) service password, which allows physically proximate attackers to modify device configuration and cause a denial of service (adverse huma...Show more
ZOLL Defibrillator / Monitor X Series has a default (1) supervisor password and (2) service password, which allows physically proximate attackers to modify device configuration and cause a denial of service (adverse human health effects).Show less
1Zoll
1Monitor/defibrillator
May 6, 2026
Aug 12, 2014
N/A· v4
N/A· v3
4.9 MEDIUM· v2
ZOLL Defibrillator / Monitor M Series, E Series, and R Series have a default password for System Configuration mode, which allows physically proximate attackers to modify device configuration and cause a denial of servic...Show more
ZOLL Defibrillator / Monitor M Series, E Series, and R Series have a default password for System Configuration mode, which allows physically proximate attackers to modify device configuration and cause a denial of service (adverse human health effects).Show less