VYPR

Animas OneTouch Ping

by Johnson & Johnson

CVEs (3)

  • CVE-2016-5086CriOct 5, 2016
    risk 0.64cvss 9.8epss 0.05

    Johnson & Johnson Animas OneTouch Ping devices allow remote attackers to bypass authentication via replay attacks.

  • CVE-2016-5085HigOct 5, 2016
    risk 0.49cvss 7.5epss 0.04

    Johnson & Johnson Animas OneTouch Ping devices do not properly generate random numbers, which makes it easier for remote attackers to spoof meters by sniffing the network and then engaging in an authentication handshake.

  • CVE-2016-5084HigOct 5, 2016
    risk 0.49cvss 7.5epss 0.02

    Johnson & Johnson Animas OneTouch Ping devices do not use encryption for certain data, which might allow remote attackers to obtain sensitive information by sniffing the network.