CVE-2022-22765: BD Viper LT System - Hardcoded Credentials
BD Viper LT system, versions 2.0 and later, contains hardcoded credentials. If exploited, threat actors may be able to access, modify or delete sensitive information, including electronic protected health information (ePHI), protected health information (PHI) and personally identifiable information (PII). BD Viper LT system versions 4.0 and later utilize Microsoft Windows 10 and have additional Operating System hardening configurations which increase the attack complexity required to exploit this vulnerability.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2022-22765.
What is the severity of CVE-2022-22765?
The severity of CVE-2022-22765 is rated as high with a CVSS score of 7.8.
What is the affected software in this vulnerability?
The affected software in this vulnerability is BD Viper LT system, versions 2.0 and later.
What are the potential consequences of exploiting this vulnerability?
If exploited, threat actors may be able to access, modify, or delete sensitive information, including electronic protected health information (ePHI), protected health information (PHI), and personally identifiable information (PII).
Are there any patches or bulletins available to address this vulnerability?
Yes, patches and bulletins for addressing this vulnerability can be found at the following references: [Link to BD Viper LT system - Hardcoded Credentials bulletin](https://cybersecurity.bd.com/bulletins-and-patches/bd-viper-lt-system-%E2%80%93-hardcoded-credentials) and [Link to ICSMA-22-062-02 advisory](https://www.cisa.gov/uscert/ics/advisories/icsma-22-062-02).