Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home Alerts

Feds Warn of Flaws in Baxter Devices

June 4, 2024
Reading Time: 2 mins read
in Alerts
Feds Warn of Flaws in Baxter Devices

U.S. federal authorities have issued alerts about significant vulnerabilities in two medical devices from Baxter, a major manufacturer. The Department of Health and Human Services‘ Health Sector Cyber Coordination Center revealed that these flaws, affecting the Baxter Welch Allyn Connex Spot Monitor and the Baxter Welch Allyn Configuration Tool, could be exploited remotely, potentially compromising patient care. These vulnerabilities were highlighted in advisories from the Cybersecurity and Infrastructure Security Agency.

The first issue involves the Baxter Welch Allyn Connex Spot Monitor, which has a vulnerability due to the use of default cryptographic keys in versions 1.52 and earlier. This flaw, assigned a high severity score of 9.1, could allow attackers to alter device configurations and firmware, affecting patient care. Baxter has addressed this by releasing an update that mitigates the issue, advising users to upgrade to the latest version and apply proper security measures.

The second vulnerability pertains to the Baxter Welch Allyn Configuration Tool, which suffers from insufficiently protected credentials. This flaw, with a CVSS score of 9.4, could lead to unauthorized exposure of credentials. Baxter has announced that a new version will be released in the third quarter of 2024 to address this issue. In the meantime, Baxter recommends implementing strong network security controls and contacting technical support for configuration needs.

The broader issue highlights ongoing challenges in medical device security, with experts pointing out that many devices in use today lack sufficient security testing. The FDA’s new cybersecurity guidance focuses on premarket devices, leaving a gap for existing products. Improved regulatory scrutiny and clearer vulnerability disclosures are needed to better protect healthcare providers and patients from potential risks associated with these and other medical devices.

Reference:

  • Baxter Medical Devices Face Major Cybersecurity Risks
Tags: Cyber AlertsCyber Alerts 2024Cyber threatsDepartment of Health and Human Servicesfederal authoritiesJune 2024USAVulnerabilities
ADVERTISEMENT

Related Posts

Hackers Revive SEO Poisoning

Hackers Revive SEO Poisoning

July 10, 2025
Hackers Revive SEO Poisoning

RondoDox Botnet Exploits Router Flaws

July 10, 2025
Hackers Revive SEO Poisoning

ServiceNow Data Exposure via ACLs

July 10, 2025
Hackers Use Leaked Shellter License Malware

Windows BitLocker Vulnerability Flaw

July 9, 2025
Hackers Use Leaked Shellter License Malware

Hackers Use Leaked Shellter License Malware

July 9, 2025
Hackers Use Leaked Shellter License Malware

Anatsa Android Trojan Targets 90K Users

July 9, 2025

Latest Alerts

RondoDox Botnet Exploits Router Flaws

ServiceNow Data Exposure via ACLs

Hackers Revive SEO Poisoning

Windows BitLocker Vulnerability Flaw

Anatsa Android Trojan Targets 90K Users

Hackers Use Leaked Shellter License Malware

Subscribe to our newsletter

    Latest Incidents

    Bitcoin Depot Breach Exposes Data

    McDonald’s AI Hiring Bot Exposes Data

    Nippon Steel Solutions Data Breach

    Norwegian Municipalities Hit by Data Breach

    Credit Reports Breached And Sold On Dark Web

    Recruiting Software Exposed 26M Resumes

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial