Security Advisory

CVE-2022-38069

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-09-13 14:54:54
Last updated 2025-04-16 16:10:11
Assigner icscert
State PUBLISHED

Description

Multiple globally default credentials exist across all CMS8000 devices, that once exposed, allow a threat actor with momentary physical access to gain privileged access to any device. Privileged credential access enables the extraction of sensitive patient information or modification of device parameters