CVE-2014-5434
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Baxter SIGMA Spectrum Infusion System version 6.05 (model 35700BAX) with wireless battery module (WBM) version 16 has a default account with hard-coded credentials used with the FTP protocol. Baxter asserts no files can be transferred to or from the WBM using this account. Baxter has released a new version of the SIGMA Spectrum Infusion System, Version 8, which incorporates hardware and software changes.
Baxter SIGMA Spectrum Infusion System 6.05 (modelo 35700BAX), con un módulo de batería inalámbrica (WBM), en su versión 16, tiene una cuenta por defecto con credenciales embebidas empleadas con el protocolo FTP. Baxter afirma que no se pueden transferir archivos desde o hasta el WBM mediante esta cuenta. Baxter ha publicado una nueva versión de SIGMA Spectrum Infusion System, la 8, que incluye cambios en el software y el hardware.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2014-08-22 CVE Reserved
- 2019-03-26 CVE Published
- 2023-03-07 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-259: Use of Hard-coded Password
- CWE-798: Use of Hard-coded Credentials
CAPEC
References (1)
URL | Tag | Source |
---|---|---|
https://ics-cert.us-cert.gov/advisories/ICSA-15-181-01 | Mitigation |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Baxter Search vendor "Baxter" | Sigma Spectrum Infusion System Firmware Search vendor "Baxter" for product "Sigma Spectrum Infusion System Firmware" | 6.05 Search vendor "Baxter" for product "Sigma Spectrum Infusion System Firmware" and version "6.05" | - |
Affected
| in | Baxter Search vendor "Baxter" | Sigma Spectrum Infusion System Search vendor "Baxter" for product "Sigma Spectrum Infusion System" | - | - |
Safe
|
Baxter Search vendor "Baxter" | Sigma Spectrum Infusion System Firmware Search vendor "Baxter" for product "Sigma Spectrum Infusion System Firmware" | 6.05 Search vendor "Baxter" for product "Sigma Spectrum Infusion System Firmware" and version "6.05" | - |
Affected
| in | Baxter Search vendor "Baxter" | Wireless Battery Module Search vendor "Baxter" for product "Wireless Battery Module" | 16 Search vendor "Baxter" for product "Wireless Battery Module" and version "16" | - |
Safe
|