Vulnerability Details CVE-2023-30561
The data flowing between the PCU and its modules is insecure. A threat actor with physical access could potentially read or modify data by attaching a specially crafted device while an infusion is running.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 13.9%
CVSS Severity
CVSS v3 Score 6.1
Products affected by CVE-2023-30561
-
cpe:2.3:h:bd:alaris_8015_pcu:-
-
cpe:2.3:o:bd:alaris_8015_pcu_firmware:-
-
cpe:2.3:o:bd:alaris_8015_pcu_firmware:12.1.3
-
cpe:2.3:o:bd:alaris_8015_pcu_firmware:9.33.1