CVE-2022-40263
BD Totalys MultiProcessor - Hardcoded Credentials
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
BD Totalys MultiProcessor, versions 1.70 and earlier, contain hardcoded credentials. If exploited, threat actors may be able to access, modify or delete sensitive information, including electronic protected health information (ePHI), protected health information (PHI) and personally identifiable information (PII). Customers using BD Totalys MultiProcessor version 1.70 with Microsoft Windows 10 have additional operating system hardening configurations which increase the attack complexity required to exploit this vulnerability.
BD Totalys MultiProcessor, versiones 1.70 y anteriores, contienen credenciales codificadas. Si se explotan, los actores de amenazas pueden acceder, modificar o eliminar información confidencial, incluida la información médica protegida electrónica (ePHI), la información médica protegida (PHI) y la información de identificación personal (PII). Los clientes que utilizan BD Totalys MultiProcessor versión 1.70 con Microsoft Windows 10 tienen configuraciones de refuerzo del Sistema Operativo adicionales que aumentan la complejidad del ataque necesaria para explotar esta vulnerabilidad.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-09-08 CVE Reserved
- 2022-11-04 CVE Published
- 2024-04-26 EPSS Updated
- 2024-09-17 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-798: Use of Hard-coded Credentials
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Bd Search vendor "Bd" | Totalys Multiprocessor Firmware Search vendor "Bd" for product "Totalys Multiprocessor Firmware" | < 1.71 Search vendor "Bd" for product "Totalys Multiprocessor Firmware" and version " < 1.71" | - |
Affected
| in | Bd Search vendor "Bd" | Totalys Multiprocessor Search vendor "Bd" for product "Totalys Multiprocessor" | - | - |
Safe
|