CVE-2024-48967
EUVD-2024-4315414.11.2024, 22:15
The ventilator and the Service PC lack sufficient audit logging capabilities to allow for detection of malicious activity and subsequent forensic examination. An attacker with access to the ventilator and/or the Service PC could, without detection, make unauthorized changes to ventilator settings that result in unauthorized disclosure of information and/or have unintended impacts on device performance.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| baxter | life2000_ventilator_firmware | 𝑥 < 6.08.00.00 | ADP |
Common Weakness Enumeration