CVE-2024-48974
EUVD-2024-4315814.11.2024, 22:15
The ventilator does not perform proper file integrity checks when adopting firmware updates. This makes it possible for an attacker to force unauthorized changes to the device's configuration settings and/or compromise device functionality by pushing a compromised/illegitimate firmware file. This could disrupt the function of the device and/or cause unauthorized information disclosure.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| baxter | life2000_ventilator_firmware | 𝑥 ≤ 06.08.00.00 | ADP |
Common Weakness Enumeration