First published: Thu Jul 13 2023(Updated: )
The data flowing between the PCU and its modules is insecure. A threat actor with physical access could potentially read or modify data by attaching a specially crafted device while an infusion is running.
Credit: cybersecurity@bd.com cybersecurity@bd.com
Affected Software | Affected Version | How to fix |
---|---|---|
Bd Alaris 8015 Pcu Firmware | <=12.1.3 | |
Bd Alaris 8015 Pcu |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-30561 is a vulnerability that allows a threat actor with physical access to potentially read or modify data flowing between the BD Alaris 8015 PCU and its modules.
CVE-2023-30561 has a severity value of 6.1, which is considered medium.
CVE-2023-30561 affects BD Alaris 8015 PCU firmware versions up to and including 12.1.3.
No, the BD Alaris 8015 PCU itself is not vulnerable to CVE-2023-30561.
You can learn more about CVE-2023-30561 by visiting the following reference link: [BD Alaris System with Guardrails Suite MX Security Bulletin](https://www.bd.com/en-us/about-bd/cybersecurity/bulletin/bd-alaris-system-with-guardrails-suite-mx)