← back
CVE-2025-0626highobserved exploitationCWE-912

Hidden Functionality vulnerability in Contec Health CMS8000 Patient Monitor

43Vexday Risk Score

Prioritize patching. It exploitation observed by VulnCheck.

ssvc Actcvss 7.7epss 1.1%
from disclosure to weapon
Published on NVDJan 30
VulnCheck+355d
exploitation probability
1.1%top 37% of all CVEs
observed exploitation
yesVulnCheck
The "monitor" binary in the firmware of the affected product attempts to mount to a hard-coded, routable IP address, bypassing existing device network settings to do so. The function also enables the network interface of the device if it is disabled. The function is triggered by attempting to update the device from the user menu. This could serve as a backdoor to the device, and could lead to a malicious actor being able to upload and overwrite files on the device.
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N