Draeger manufactures clinical and anesthesia delivery systems, and its vulnerability footprint reflects the embedded firmware and control-interface risks inherent to medical devices, with exposure centered on products such as the Delta XL and Infinity series. The durable signal focuses on input-validation weaknesses, privilege-management flaws, and information-disclosure issues arising from device configuration and logging mechanisms. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Draeger over time
Signals from CVEs in this vendor scope (8 CVEs).
8 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-25718HIGH Dräger Infinity Explorer C700 contains a privilege escalation vulnerability that allows attackers to break out of kiosk mode and access the underlying operating system through a sp | Jun 1, 2026 | 8.4 | 33 | NO | NO |
CVE-2019-25716HIGH Dräger Infinity Delta, Delta XL, and Kappa patient monitors contain a denial-of-service vulnerability that allows remote attackers to cause the monitor to reboot by sending a malfo | Jun 1, 2026 | 7.5 | 31 | NO | NO |
CVE-2021-28111HIGH Draeger X-Dock Firmware before 03.00.13 has Hard-Coded Credentials, leading to remote code execution by an authenticated attacker. | May 20, 2021 | 8.8 | 28 | NO | NO |
CVE-2021-28112HIGH Draeger X-Dock Firmware before 03.00.13 has Active Debug Code on a debug port, leading to remote code execution by an authenticated attacker. | May 20, 2021 | 8.8 | 27 | NO | NO |
CVE-2018-19012HIGH Drager Infinity Delta, Infinity Delta, all versions, Delta XL, all versions, Kappa, all version, and Infinity Explorer C700, all versions. Via a specific dialog it is possible to b | Jan 28, 2019 | 7.8 | 25 | NO | NO |
CVE-2018-19014MEDIUM Drager Infinity Delta, Infinity Delta, all versions, Delta XL, all versions, Kappa, all version, and Infinity Explorer C700, all versions. Log files are accessible over an unauthen | Jan 28, 2019 | 6.5 | 22 | NO | NO |
CVE-2018-19010MEDIUM Drager Infinity Delta, Infinity Delta, all versions, Delta XL, all versions, Kappa, all version, and Infinity Explorer C700, all versions. A malformed network packet may cause the | Jan 28, 2019 | 6.5 | 22 | NO | NO |
CVE-2019-25717MEDIUM Dräger Infinity Delta, Delta XL, and Kappa patient monitors contain an information disclosure vulnerability that allows unauthenticated network attackers to access log files over a | Jun 2, 2026 | 4.3 | 21 | NO | NO |
Signals from CVEs in this vendor scope (8 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Draeger.
Media articles that mention a CVE ID that affects a product developed by Draeger — matched by CVE ID, not by vendor name.