CVE-2020-12045: Critical severity baxter sigma spectrum infusion system vulnerability
The Baxter Spectrum WBM (v17, v20D29, v20D30, v20D31, and v22D24) when used in conjunction with a Baxter Spectrum v8.x (model 35700BAX2), operates a Telnet service on Port 1023 with hard-coded credentials.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-12045?
CVE-2020-12045 has a high severity due to the exposure of hard-coded credentials and accessibility via Telnet.
How does CVE-2020-12045 affect devices?
CVE-2020-12045 affects the Baxter Spectrum WBM and Spectrum v8.x infusion system, allowing unauthorized access.
How do I fix CVE-2020-12045?
To mitigate CVE-2020-12045, disable the Telnet service on affected devices and implement stronger access controls.
Which versions are affected by CVE-2020-12045?
CVE-2020-12045 affects Baxter Spectrum WBM versions 17, 20D29, 20D30, 20D31, and 22D24 when used with Baxter Spectrum v8.x.
Is there a patch available for CVE-2020-12045?
There is currently no reported patch for CVE-2020-12045, so users should focus on disabling the vulnerable service.