news.mlab.sh
Back to the feed
vulnerability

Fourth Frontier Frontier X Mobile Application, Frontier X2

High
Summary

A vulnerability has been identified in the Fourth Frontier Frontier X Mobile Application and Frontier X2 devices, allowing unauthorized access and control. Attackers could potentially read and modify patient data, trigger device functions, and cause denial-of-service conditions. This poses a significant risk to healthcare and public health sectors due to the device's BLE functionality.

The vulnerability, identified by CISA, affects versions of the Frontier X Android application (prior to v15.0.0) and the Frontier X IOS application (prior to v25.0.0), as well as all versions of the Frontier X2 device. The issue stems from a lack of proper BLE device authentication and authorization, enabling attackers within range to manipulate device functions and inject fabricated health telemetry. This could lead to compromised patient data and potential harm. Fourth Frontier is aware of the issue and working on a fix, urging users to contact them for assistance.

Read the full article at CISA Advisories