ZeroHour

CVE-2022-26394

CVSS 3.1
5.4 medium
EPSS
<1%p28
Published
()
Modified
Description

The Baxter Spectrum WBM does not perform mutual authentication with the gateway server host. This may allow an attacker to perform a man in the middle attack that modifies parameters making the network connection fail.

Vendors
baxter
Products
spectrum wireless battery module firmware, sigma spectrum 35700bax firmware, sigma spectrum 35700bax2 firmware, baxter spectrum iq 35700bax3 firmware
Weakness
CWE-306
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L

In the news