PT-2023-30398 · Abbott · Id Now

Published

2023-11-14

·

Updated

2023-12-13

·

CVE-2023-47262

CVSS v3.1

5.2

Medium

VectorAV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:L
Name of the Vulnerable Software and Affected Versions Abbott ID NOW versions prior to 7.1
Description The issue allows modification of the startup process and device configurations via physical access to an internal serial port. Direct physical access is required to exploit this issue. Settings can be modified through this access.
Recommendations For versions prior to 7.1, as a temporary workaround, consider restricting physical access to the internal serial port until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2023-47262

Affected Products

Id Now