CVE-2017-14014 describes a vulnerability in the Boston Scientific ZOOM LATITUDE PRM Model 3120 and its firmware, where a hard-coded cryptographic key is used to encrypt Protected Health Information (PHI) before transfer to removable media. This flaw carries a CVSS v3 base score of 4.6 (Medium), indicating a physical attack vector with low complexity that could lead to high confidentiality impact by allowing unauthorized access to sensitive patient data. There is no known active exploitation, publicly available exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:bostonscientific:zoom_latitude_prm_3120_firmware:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.2 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.