CVE-2017-12716 describes a vulnerability in Abbott Laboratories Accent and Anthem pacemakers manufactured before August 28, 2017, where unencrypted patient information is transmitted via RF communications and stored without encryption. This vulnerability has a CVSS v3 base score of 6.5 (Medium), indicating a low attack complexity and requiring adjacent network access to achieve high confidentiality impact. While Abbott has released a firmware update to mitigate this issue, there is no public exploit code available (Metasploit, Nuclei, ExploitDB), and it is not listed on the KEV catalog. Community discussion and media coverage are minimal, suggesting limited public attention or active exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< f0b.0e.7eCPE matchmatch criteria | cpe:2.3:o:abbott:accent_firmware:*:*:*:*:*:*:*:* | ||
< f0b.0e.7eCPE matchmatch criteria | cpe:2.3:o:abbott:anthem_firmware:*:*:*:*:*:*:*:* | ||
< f10.08.6cCPE matchmatch criteria | cpe:2.3:o:abbott:accent_mri_firmware:*:*:*:*:*:*:*:* | ||
< f10.08.6cCPE matchmatch criteria | cpe:2.3:o:abbott:accent_st_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.