CVE-2020-12032

Baxter ExactaMix EM 2400 Versions 1.10, 1.11 and ExactaMix EM1200 Versions 1.1, 1.2 systems store device data with sensitive information in an unencrypted database. This could allow an attacker with network access to view or modify sensitive data including PHI.
References
Link Resource
https://www.us-cert.gov/ics/advisories/icsma-20-170-01 Third Party Advisory US Government Resource
Configurations

Configuration 1


Information

Published : 2020-06-29 02:15

Updated : 2021-11-04 05:37


NVD link : CVE-2020-12032

Mitre link : CVE-2020-12032

Products Affected
No products.
CWE
CWE-312

Cleartext Storage of Sensitive Information