CVE-2022-43557: BD BodyGuard™ Pumps – RS-232 Interface Vulnerability
The BD BodyGuard™ infusion pumps specified allow for access through the RS-232 (serial) port interface. If exploited, threat actors with physical access, specialized equipment and knowledge may be able to configure or disable the pump. No electronic protected health information (ePHI), protected health information (PHI) or personally identifiable information (PII) is stored in the pump.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-43557?
CVE-2022-43557 is a vulnerability that allows threat actors with physical access and specialized equipment to configure or disable the BD BodyGuard™ infusion pumps through the RS-232 interface.
How does CVE-2022-43557 affect the BD BodyGuard™ infusion pumps?
CVE-2022-43557 affects the BD BodyGuard™ infusion pumps by allowing unauthorized configuration or disabling of the pumps through the RS-232 interface.
What is the severity of CVE-2022-43557?
CVE-2022-43557 has a severity rating of 5.3 (Medium).
What is the affected software of CVE-2022-43557?
The affected software of CVE-2022-43557 includes the BD BodyGuard™ infusion pumps with specific firmware versions.
How can I mitigate CVE-2022-43557?
To mitigate CVE-2022-43557, follow the recommendations provided by the vendor and refer to the provided reference link for more information.