Dräger SC Monitoring devices (SC 6002XL, SC 6802XL, SC 7000, SC 8000, SC 9000 XL) contain a denial-of-service vulnerability in all software versions that allows unauthenticated attackers to reboot the monitor by sending a malformed network packet. Attackers can repeatedly send such malformed packets to disrupt patient monitoring until the device falls back to default configuration and loses network connectivity.
History

Fri, 05 Jun 2026 08:45:00 +0000

Type Values Removed Values Added
First Time appeared Draeger
Draeger sc6802xl
Draeger sc8000
Draeger sc90000 Xl
Draeger sc 6002xl
Draeger sc 7000
Vendors & Products Draeger
Draeger sc6802xl
Draeger sc8000
Draeger sc90000 Xl
Draeger sc 6002xl
Draeger sc 7000

Wed, 03 Jun 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 03 Jun 2026 17:45:00 +0000

Type Values Removed Values Added
Description Dräger SC Monitoring devices (SC 6002XL, SC 6802XL, SC 7000, SC 8000, SC 9000 XL) contain a denial-of-service vulnerability in all software versions that allows unauthenticated attackers to reboot the monitor by sending a malformed network packet. Attackers can repeatedly send such malformed packets to disrupt patient monitoring until the device falls back to default configuration and loses network connectivity.
Title Dräger SC Monitoring Devices DoS via Malformed Network Packet
Weaknesses CWE-1286
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}

cvssV4_0

{'score': 7.1, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published: 2026-06-03T16:56:29.683Z

Updated: 2026-06-03T17:44:47.456Z

Reserved: 2026-06-02T14:22:01.500Z

Link: CVE-2019-25720

cve-icon Vulnrichment

Updated: 2026-06-03T17:44:28.963Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-06-03T18:16:15.910

Modified: 2026-06-04T15:29:14.323

Link: CVE-2019-25720

cve-icon Redhat

No data.