Security Advisory
CVE-2024-48973
9.3
CRITICAL
Vulnerability Description
The debug port on the ventilator's serial interface is enabled by default. This could allow an attacker to send and receive messages over the debug port (which are unencrypted; see 3.2.1) that result in unauthorized disclosure of information and/or have unintended impacts on device settings and performance.
Published Date
November 14, 2024
Official Source
NIST NVD Advisory