PT-2021-20350 · B. Braun · B. Braun Spacecom2

Published

2021-08-25

·

Updated

2021-09-01

·

CVE-2021-33883

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: B. Braun SpaceCom2 versions prior to 012U000062
Description: A Cleartext Transmission of Sensitive Information issue allows a remote attacker to obtain sensitive information by snooping on the network traffic. The exposed data includes critical values for a pump's internal configuration.
Recommendations: For versions prior to 012U000062, update to version 012U000062 or later to resolve the issue. As a temporary workaround, consider restricting network access to the device to minimize the risk of exploitation.

Exploit

Fix

Cleartext Transmission of Sensitive Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-33883

Affected Products

B. Braun Spacecom2