← back
CVE-2021-38400mediumCWE-916

Use of Password Hash with Insufficient Computational Effort for Boston Scientific Zoom Latitude

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 6.9epss 0.1%
exploitation probability
0.1%top 95% of all CVEs
observed exploitation
nono source reports it
An attacker with physical access to Boston Scientific Zoom Latitude Model 3120 can remove the hard disk drive or create a specially crafted USB to extract the password hash for brute force reverse engineering of the system password.
CVSS:3.1/AV:P/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:L