The communication module on the Hospira LifeCare PCA Infusion System prior to 7.0 does not require authentication for root TELNET sessions, which allows remote malicious users to modify the pump configuration via unspecified commands.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
hospira lifecare_pcainfusion_firmware |
||
hospira lifecare_pca5 - |
||
hospira lifecare_pca3 - |