🔐 CVE Alert

CVE-2019-25717

MEDIUM 4.3

Dräger Infinity Delta/Kappa Patient Monitors Unauthenticated Log File Disclosure

CVSS Score
4.3
EPSS Score
0.0%
EPSS Percentile
0th

Dräger Infinity Delta, Delta XL, and Kappa patient monitors contain an information disclosure vulnerability that allows unauthenticated network attackers to access log files over a network connection. Attackers can retrieve device internals, location information, and wired network configuration details from the exposed log files.

CWE CWE-538
Vendor dräger
Product infinity delta
Published Jun 2, 2026
Last Updated Jun 3, 2026
Stay Ahead of the Next One

Get instant alerts for dräger infinity delta

Be the first to know when new medium vulnerabilities affecting dräger infinity delta are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Attack Vector
Adjacent
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
Low
Integrity
None
Availability
None

Affected Versions

Dräger / Infinity Delta
all software versions
Dräger / Infinity Delta XL
all software versions
Dräger / Infinity Kappa
all software versions

References

NVD ↗ CVE.org ↗ EPSS Data ↗
static.draeger.com: https://static.draeger.com/security vulncheck.com: https://www.vulncheck.com/advisories/dr-ger-infinity-delta-kappa-patient-monitors-unauthenticated-log-file-disclosure

Credits

Marc Ruef and Rocco Gagliardi, scip AG