Baxter ExactaMix EM 2400 Versions 1.10, 1.11 and ExactaMix EM1200 Versions 1.1, 1.2 systems use cleartext messages to communicate order information with an order entry system. This could allow an attacker with network access to view sensitive data including PHI.
                
            References
                    | Link | Resource | 
|---|---|
| https://www.us-cert.gov/ics/advisories/icsma-20-170-01 | Third Party Advisory US Government Resource | 
Configurations
                    Configuration 1 (hide)
| AND | 
            
            
 
  | 
    
Configuration 2 (hide)
| AND | 
            
            
 
  | 
    
History
                    No history.
Information
                Published : 2020-06-29 14:15
Updated : 2020-07-08 18:22
NVD link : CVE-2020-12008
Mitre link : CVE-2020-12008
CVE.ORG link : CVE-2020-12008
JSON object : View
Products Affected
                baxter
- em2400
 - em1200_firmware
 - em2400_firmware
 - em1200
 
CWE
                
                    
                        
                        CWE-319
                        
            Cleartext Transmission of Sensitive Information
