CVE-2023-30561
CVSS 3.1 Score 6.1 of 10 (medium)
Details
Summary
CVE-2023-30561 refers to a vulnerability in the communication between a Programmable Control Unit (PCU) and its modules. This issue poses a risk as a threat actor with physical access can potentially interfere with data transmission. They could attach a specially crafted device to read or modify data while an infusion is running. The security of data flowing between the PCU and its modules is compromised, increasing the risk of unauthorized access or manipulation. This vulnerability could have significant implications for industries that rely on medical devices or other critical infrastructure, requiring immediate attention and appropriate mitigation measures.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Becton Dickinson