CVE-2011-3386 describes an unspecified vulnerability in Medtronic Paradigm wireless insulin pump models 512, 522, 712, and 722. This flaw allows remote attackers to modify insulin bolus delivery and cause a denial of service (adverse health effects) through wireless communication, requiring knowledge of the device's serial number. The CVSS score of 4.0 indicates a medium severity, with a network attack vector and high access complexity, leading to partial impact on integrity and availability. Despite the vendor disputing the severity, there is no evidence of active exploitation, publicly available exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
512CPE matchmatch criteria | cpe:2.3:h:medtronic:paradigm_wireless_insulin_pump:512:*:*:*:*:*:*:* | ||
522CPE matchmatch criteria | cpe:2.3:h:medtronic:paradigm_wireless_insulin_pump:522:*:*:*:*:*:*:* | ||
712CPE matchmatch criteria | cpe:2.3:h:medtronic:paradigm_wireless_insulin_pump:712:*:*:*:*:*:*:* | ||
722CPE matchmatch criteria | cpe:2.3:h:medtronic:paradigm_wireless_insulin_pump:722:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:H/Au:N/C:N/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.