Description

The debug port on the ventilator's serial interface is enabled by default. This could allow an attacker to send and receive messages over the debug port (which are unencrypted; see 3.2.1) that result in unauthorized disclosure of information and/or have unintended impacts on device settings and performance.

INFO

Published Date :

2024-11-14T21:24:14.099Z

Last Modified :

2024-11-18T15:33:44.924Z

Source :

Baxter
AFFECTED PRODUCTS

The following products are affected by CVE-2024-48973 vulnerability.

Vendors Products
Baxter
  • Life2000 Ventilator Firmware
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-48973.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact