Baxter ExactaMix EM 2400 Versions 1.10, 1.11 and ExactaMix EM1200 Versions 1.1, 1.2 systems use cleartext messages to communicate order information with an order entry system. This could allow an attacker with network access to view sensitive data including PHI.
References
Link | Resource |
---|---|
https://www.us-cert.gov/ics/advisories/icsma-20-170-01 | Third Party Advisory US Government Resource |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
History
No history.
Information
Published : 2020-06-29 14:15
Updated : 2020-07-08 18:22
NVD link : CVE-2020-12008
Mitre link : CVE-2020-12008
CVE.ORG link : CVE-2020-12008
JSON object : View
Products Affected
baxter
- em2400
- em1200_firmware
- em2400_firmware
- em1200
CWE
CWE-319
Cleartext Transmission of Sensitive Information