Baxter
Baxter Sigma Spectrum Infusion System Firmware: vulnerabilidades y CVE
Baxter Sigma Spectrum Infusion System Firmware tiene 10 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 8 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE10
Últimos 12 meses0
Críticas8
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2020-12047 | Crítica (9.8) | 1.7% | — | 29 jun 2020 | The Baxter Spectrum WBM (v17, v20D29, v20D30, v20D31, and v22D24), when used with a Baxter Spectrum v8.x (model 35700BAX2) in a factory-default wireless configuration enables an FTP service with hard-coded credentials. |
| CVE-2020-12045 | Crítica (9.8) | 1.7% | — | 29 jun 2020 | The Baxter Spectrum WBM (v17, v20D29, v20D30, v20D31, and v22D24) when used in conjunction with a Baxter Spectrum v8.x (model 35700BAX2), operates a Telnet service on Port 1023 with hard-coded credentials. |
| CVE-2020-12043 | Crítica (9.8) | 2.1% | — | 29 jun 2020 | The Baxter Spectrum WBM (v17, v20D29, v20D30, v20D31, and v22D24) when configured for wireless networking the FTP service operating on the WBM remains operational until the WBM is rebooted. |
| CVE-2020-12041 | Crítica (9.4) | 1.4% | — | 29 jun 2020 | The Baxter Spectrum WBM (v17, v20D29, v20D30, v20D31, and v22D24) telnet Command-Line Interface, grants access to sensitive data stored on the WBM that permits temporary configuration changes to network settings of the… |
| CVE-2020-12040 | Crítica (9.8) | 0.95% | — | 29 jun 2020 | Sigma Spectrum Infusion System v's6.x (model 35700BAX) and Baxter Spectrum Infusion System Version(s) 8.x (model 35700BAX2) at the application layer uses an unauthenticated clear-text communication channel to send and… |
| CVE-2020-12039 | Baja (2.4) | 0.35% | — | 29 jun 2020 | Baxter Sigma Spectrum Infusion Pumps Sigma Spectrum Infusion System v's6.x model 35700BAX & Baxter Spectrum Infusion System v's8.x model 35700BAX2 contain hardcoded passwords when physically entered on the keypad… |
| CVE-2014-5433 | Crítica (9.8) | 2.1% | — | 26 mar 2019 | An unauthenticated remote attacker may be able to execute commands to view wireless account credentials that are stored in cleartext on Baxter SIGMA Spectrum Infusion System version 6.05 (model 35700BAX) with wireless… |
| CVE-2014-5432 | Crítica (9.8) | 2.6% | — | 26 mar 2019 | Baxter SIGMA Spectrum Infusion System version 6.05 (model 35700BAX) with wireless battery module (WBM) version 16 is remotely accessible via Port 22/SSH without authentication. A remote attacker may be able to make… |
| CVE-2014-5431 | Media (6.8) | 0.38% | — | 26 mar 2019 | Baxter SIGMA Spectrum Infusion System version 6.05 (model 35700BAX) with wireless battery module (WBM) version 16 contains a hard-coded password, which provides access to basic biomedical information, limited device… |
| CVE-2014-5434 | Crítica (9.8) | 1.6% | — | 26 mar 2019 | Baxter SIGMA Spectrum Infusion System version 6.05 (model 35700BAX) with wireless battery module (WBM) version 16 has a default account with hard-coded credentials used with the FTP protocol. Baxter asserts no files can… |
Otros productos de Baxter
Em1200 Firmware · 6Em2400 Firmware · 6Baxter Spectrum IQ 35700bax3 Firmware · 4Sigma Spectrum 35700bax2 Firmware · 4Sigma Spectrum 35700bax Firmware · 4Spectrum Wireless Battery Module Firmware · 4Prismax Firmware · 3Prismaflex Firmware · 3Connex Health Portal · 2Welch Allyn Xscribe Cardiac Stress Testing System Firmware · 1Welch Allyn Configuration Tool · 1Welch Allyn Connex Cardio · 1