High severity8.2NVD Advisory· Published Jun 5, 2018· Updated Jun 17, 2026
CVE-2018-10601
CVE-2018-10601
Description
IntelliVue Patient Monitors MP Series (including MP2/X2/MP30/MP50/MP70/NP90/MX700/800) Rev B-M, IntelliVue Patient Monitors MX (MX400-550) Rev J-M and (X3/MX100 for Rev M only), and Avalon Fetal/Maternal Monitors FM20/FM30/FM40/FM50 with software Revisions F.0, G.0 and J.3 have a vulnerability that exposes an "echo" service, in which an attacker-sent buffer to an attacker-chosen device address within the same subnet is copied to the stack with no boundary checks, hence resulting in stack overflow.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: Rev B-M
- Range: software Revisions F.0, G.0 and J.3
- ICS-CERT/IntelliVue Patient Monitors, Avalon Fetal/Maternal Monitorsv5Range: The following IntelliVue Patient Monitors versions are affected: IntelliVue Patient Monitors MP Series (includingMP2/X2/MP30/MP50/MP70/NP90/MX700/800) Rev B-M, and IntelliVue Patient Monitors MX (MX400-550) Rev J-M and (X3/MX100 for Rev M only). The following Avalon Fetal/Maternal Monitors versions are affected: Avalon Fetal/Maternal Monitors FM20/FM30/FM40/FM50 with software Revisions F.0, G.0 and J.3
Patches
Vulnerability mechanics
References
1- ics-cert.us-cert.gov/advisories/ICSMA-18-156-01nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.