Hard-coded Service Password Vulnerability in Baxter PrismaFlex and PrisMax Devices
CVE-2020-12035
What is CVE-2020-12035?
The Baxter PrismaFlex and PrisMax devices are impacted by a security flaw due to a hard-coded service password. This vulnerability permits unauthorized users to gain access to sensitive biomedical information, adjust device settings, and manipulate calibration settings. The presence of such a password poses significant risks, potentially allowing attackers to compromise device operations and patient safety. It is vital for users to apply security patches and evaluate their device configurations to mitigate these risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Baxter PrismaFlex and PrisMax PrismaFlex all versions, PrisMax all versions prior to 3.x
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
