CVE-2020-12048
CVE-2020-12048
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 0.5%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
29 jun 2020Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Phoenix Hemodialysis Delivery System SW 3.36 and 3.40, The Phoenix Hemodialysis device does not support data-in-transit encryption (e.g., TLS/SSL) when transmitting treatment and prescription data on the network between the Phoenix system and the Exalis dialysis data management tool. An attacker with access to the network could observe sensitive treatment and prescription data sent between the Phoenix system and the Exalis tool.
Productos afectados
n/a · Baxter Phoenix Hemodialysis Delivery System¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →