Learn about CVE-2020-12047 affecting Baxter Sigma Spectrum Infusion Pumps. Understand the impact, affected systems, and mitigation steps for this vulnerability.
A vulnerability in Baxter Sigma Spectrum Infusion Pumps could allow unauthorized access due to hard-coded credentials.
Understanding CVE-2020-12047
The Baxter Spectrum WBM (v17, v20D29, v20D30, v20D31, and v22D24) in conjunction with a Baxter Spectrum v8.x (model 35700BAX2) exposes an FTP service with fixed credentials.
What is CVE-2020-12047?
The vulnerability arises from the use of hard-coded credentials in the Baxter Spectrum WBM when paired with a specific model of the Baxter Spectrum infusion pump.
The Impact of CVE-2020-12047
This vulnerability could be exploited by attackers to gain unauthorized access to the infusion pump, potentially disrupting medical treatment or extracting sensitive data.
Technical Details of CVE-2020-12047
The technical aspects of the vulnerability are as follows:
Vulnerability Description
Affected Systems and Versions
Exploitation Mechanism
Mitigation and Prevention
To address CVE-2020-12047, consider the following steps:
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates