Baxter ExactaMix EM 2400 Versions 1.10, 1.11 and ExactaMix EM1200 Versions 1.1, 1.2 systems use cleartext messages to communicate order information with an order entry system. This could allow an attacker with network access to view sensitive data including PHI.
References
Link | Resource |
---|---|
https://www.us-cert.gov/ics/advisories/icsma-20-170-01 | Third Party Advisory US Government Resource |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Information
Published : 2020-06-29 07:15
Updated : 2020-07-08 11:22
NVD link : CVE-2020-12008
Mitre link : CVE-2020-12008
JSON object : View
CWE
CWE-319
Cleartext Transmission of Sensitive Information
Products Affected
baxter
- em2400_firmware
- em1200_firmware
- em2400
- em1200