Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home Alerts

Feds Warn of Flaws in Baxter Devices

June 4, 2024
Reading Time: 2 mins read
in Alerts
Feds Warn of Flaws in Baxter Devices

U.S. federal authorities have issued alerts about significant vulnerabilities in two medical devices from Baxter, a major manufacturer. The Department of Health and Human Services‘ Health Sector Cyber Coordination Center revealed that these flaws, affecting the Baxter Welch Allyn Connex Spot Monitor and the Baxter Welch Allyn Configuration Tool, could be exploited remotely, potentially compromising patient care. These vulnerabilities were highlighted in advisories from the Cybersecurity and Infrastructure Security Agency.

The first issue involves the Baxter Welch Allyn Connex Spot Monitor, which has a vulnerability due to the use of default cryptographic keys in versions 1.52 and earlier. This flaw, assigned a high severity score of 9.1, could allow attackers to alter device configurations and firmware, affecting patient care. Baxter has addressed this by releasing an update that mitigates the issue, advising users to upgrade to the latest version and apply proper security measures.

The second vulnerability pertains to the Baxter Welch Allyn Configuration Tool, which suffers from insufficiently protected credentials. This flaw, with a CVSS score of 9.4, could lead to unauthorized exposure of credentials. Baxter has announced that a new version will be released in the third quarter of 2024 to address this issue. In the meantime, Baxter recommends implementing strong network security controls and contacting technical support for configuration needs.

The broader issue highlights ongoing challenges in medical device security, with experts pointing out that many devices in use today lack sufficient security testing. The FDA’s new cybersecurity guidance focuses on premarket devices, leaving a gap for existing products. Improved regulatory scrutiny and clearer vulnerability disclosures are needed to better protect healthcare providers and patients from potential risks associated with these and other medical devices.

Reference:

  • Baxter Medical Devices Face Major Cybersecurity Risks
Tags: Cyber AlertsCyber Alerts 2024Cyber threatsDepartment of Health and Human Servicesfederal authoritiesJune 2024USAVulnerabilities
ADVERTISEMENT

Related Posts

Microsoft Defender Bug Allows SYSTEM Access

Uncanny Automator Bug Risks WordPress Sites

May 14, 2025
Microsoft Defender Bug Allows SYSTEM Access

Devs Hit By PyPI Solana Token Secret Theft

May 14, 2025
Microsoft Defender Bug Allows SYSTEM Access

Microsoft Defender Bug Allows SYSTEM Access

May 14, 2025
Apple Fixes Critical Bugs in iOS and MacOS

Hackers Exploit Output Messenger Zero-Day

May 13, 2025
Apple Fixes Critical Bugs in iOS and MacOS

ASUS Fixes Critical Flaws in DriverHub

May 13, 2025
Apple Fixes Critical Bugs in iOS and MacOS

Apple Fixes Critical Bugs in iOS and MacOS

May 13, 2025

Latest Alerts

Microsoft Defender Bug Allows SYSTEM Access

Uncanny Automator Bug Risks WordPress Sites

Devs Hit By PyPI Solana Token Secret Theft

Hackers Exploit Output Messenger Zero-Day

ASUS Fixes Critical Flaws in DriverHub

Apple Fixes Critical Bugs in iOS and MacOS

Subscribe to our newsletter

    Latest Incidents

    Alabama Cybersecurity Event Hits Services

    Andy Frain Data Breach Impacts 100k People

    Hong Kong DSC Hit By Ransomware Attack

    Alleged Steam Breach Exposes 89M Records

    Ulhasnagar Municipal Corporation Hacked

    Madison County Iowa Systems Disrupted

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial