cvedb.io
CVE-2019-5024
HIGH · CVSS 7.6
EPSS exploitation probability: 0%
Published 2019-04-11T18:29:00.270 · Last modified 2026-06-17T02:37:00.267

Summary

A restricted environment escape vulnerability exists in the “kiosk mode” function of Capsule Technologies SmartLinx Neuron 2 medical information collection devices running versions 9.0.3 or lower. A specific series of keyboard inputs can escape the restricted environment, resulting in full administrator access to the underlying operating system. An attacker can connect to the device via USB port with a keyboard or other HID device to trigger this vulnerability.

Affected products

capsuletech — smartlinx_neuron_2_firmware

Does this affect you?

Add your gear to cvedb and we'll alert you only when capsuletech ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.