First published: Thu Nov 14 2024(Updated: )
The ventilator and the Service PC lack sufficient audit logging capabilities to allow for detection of malicious activity and subsequent forensic examination. An attacker with access to the ventilator and/or the Service PC could, without detection, make unauthorized changes to ventilator settings that result in unauthorized disclosure of information and/or have unintended impacts on device performance.
Credit: productsecurity@baxter.com
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.