CVE-2024-6796: Vulnerability in Baxter Connex Health Portal
In Baxter Connex health portal released before 8/30/2024, an improper access control vulnerability has been found that could allow an unauthenticated attacker to gain unauthorized access to Connex portal's database and/or modify content.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-6796?
CVE-2024-6796 has a high severity rating due to its potential for unauthorized access to sensitive database information.
How do I fix CVE-2024-6796?
To fix CVE-2024-6796, update the Baxter Connex health portal to a version released after August 30, 2024.
What types of attacks can CVE-2024-6796 enable?
CVE-2024-6796 can enable unauthenticated attackers to gain unauthorized access and modify content in the Connex portal's database.
Is there a workaround for CVE-2024-6796?
Currently, there is no documented workaround for CVE-2024-6796; updating the software is recommended.
Who is affected by CVE-2024-6796?
Organizations using Baxter Connex health portal versions prior to August 30, 2024, are affected by CVE-2024-6796.