VendorsAnimasonetouch_ping_firmwareany version
Vulnerabilities

Animas OneTouch Ping Firmware any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2016-5086
Johnson & Johnson Animas OneTouch Ping devices allow remote attackers to bypass authentication via replay attacks.
Published 2016-10-05 · Modified
9.8EPSS 0.045
CVE-2016-5686
Johnson & Johnson Animas OneTouch Ping devices mishandle acknowledgements, which makes it easier for remote attackers to bypass authentication via a custom communication protocol.
Published 2016-10-05 · Modified
9.8EPSS 0.045
CVE-2016-5085
Johnson & Johnson Animas OneTouch Ping devices do not properly generate random numbers, which makes it easier for remote attackers to spoof meters by sniffing the network and then engaging in an authentication handshake.
Published 2016-10-05 · Modified
7.8EPSS 0.039
CVE-2016-5084
Johnson & Johnson Animas OneTouch Ping devices do not use encryption for certain data, which might allow remote attackers to obtain sensitive information by sniffing the network.
Published 2016-10-05 · Modified
7.5EPSS 0.022