Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2020-12012 | Baxter ExactaMix EM 2400 & EM 1200, Versions ExactaMix EM2400 Versions 1.10, 1.11, 1.13, 1.14, ExactaMix EM1200 Version… | Medium (6.1) | 2020-06-29 | Environment Specific |
| CVE-2020-12008 | Baxter ExactaMix EM 2400 Versions 1.10, 1.11 and ExactaMix EM1200 Versions 1.1, 1.2 systems use cleartext messages to c… | High (7.5) | 2020-06-29 | Environment Specific |
| CVE-2019-18256 | BIOTRONIK CardioMessenger II, The affected products use individual per-device credentials that are stored in a recovera… | Medium (4.6) | 2020-06-29 | Environment Specific |
| CVE-2019-18254 | BIOTRONIK CardioMessenger II, The affected products do not encrypt sensitive information while at rest. An attacker wit… | Medium (4.6) | 2020-06-29 | Environment Specific |
| CVE-2019-18252 | BIOTRONIK CardioMessenger II, The affected products allow credential reuse for multiple authentication purposes. An att… | Medium (4.3) | 2020-06-29 | Environment Specific |