Dräger Infinity Delta, Delta XL, and Kappa patient monitors contain an information disclosure vulnerability that allows unauthenticated network attackers to access log files over a network connection. Attackers can retrieve device internals, location information, and wired network configuration details from the exposed log files.
References
| Link | Resource |
|---|---|
| https://static.draeger.com/security | Vendor Advisory |
| https://www.vulncheck.com/advisories/dr-ger-infinity-delta-kappa-patient-monitors-unauthenticated-log-file-disclosure | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
| AND |
|
Configuration 3 (hide)
| AND |
|
History
No history.
Information
Published : 2026-06-02 14:16
Updated : 2026-07-22 19:10
NVD link : CVE-2019-25717
Mitre link : CVE-2019-25717
CVE.ORG link : CVE-2019-25717
JSON object : View
Products Affected
draeger
- infinity_delta_firmware
- kappa
- delta_xl
- infinity_delta
- delta_xl_firmware
- kappa_firmware
CWE
CWE-538
Insertion of Sensitive Information into Externally-Accessible File or Directory
NVD-CWE-noinfo