PT-2024-39874 · Unknown · Ventilator

Published

2024-11-14

·

Updated

2024-11-15

·

CVE-2024-9834

CVSS v3.1

9.3

Critical

VectorAV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Ventilator (affected versions not specified)
Description The issue concerns improper data protection on the ventilator's serial interface. This could allow an attacker to send and receive messages, resulting in unauthorized disclosure of information and/or unintended impacts on device settings and performance.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Cleartext Transmission of Sensitive Information

Weakness Enumeration

Related Identifiers

CVE-2024-9834

Affected Products

Ventilator