Description

The Clinician Password and Serial Number Clinician Password are hard-coded into the ventilator in plaintext form. This could allow an attacker to obtain the password off the ventilator and use it to gain unauthorized access to the device, with clinician privileges.

INFO

Published Date :

2024-11-14T21:13:36.036Z

Last Modified :

2024-11-15T21:06:24.325Z

Source :

Baxter
AFFECTED PRODUCTS

The following products are affected by CVE-2024-48971 vulnerability.

Vendors Products
Baxter
  • Life2000 Ventilator Firmware
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-48971.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact