PwnedPiper vulnerabilities impact 80% of major hospitals in North America
Vulnerabilities mentionedAll →
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2021-37160 | A firmware validation issue was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus Panel operated by released versions of software before Nexus Softw A firmware validation issue was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus Panel operated by released versions of software before Nexus Software 7.2.5.7. There is no firmware validation (e.g., cryptographic signature validation) during a File Upload for a firmware update. NVD description · AI analysis pending | 9.8 group max | 8% |
| — |
Full article720 words · extracted from therecord.media · click to collapse
Details have been published today about a collection of nine vulnerabilities known as PwnedPiper that impact a common type of medical equipment that's installed in roughly 80% of all major hospitals in North America. The TransLogic Pneumatic Tube Systems (PTS), from Swisslog Healthcare, is a complex system that uses compressed air to move medical supplies (lab samples, medicine, blood products, etc.) using tubes that connect different departments inside large hospitals. Installed in more than 3,000 hospitals, TransLogic systems effectively work as the blood vessels of modern hospitals as they allow the movement of sensitive medical material while keeping nurses free to provide patient care. In research published today, IoT security firm Armis said it discovered nine vulnerabilities in the Nexus Control Panel, the software that doctors and nurses use to control how medical material moves between hospital sections. "These vulnerabilities can enable an unauthenticated attacker to take over Translogic PTS stations and essentially gain complete control over the PTS network of a target hospital," the Armis team said today. "This type of control could enable sophisticated and worrisome ransomware attacks, as well as allow attackers to leak sensitive hospital information," the company added. While the vulnerabilities can be exploited only if an attacker can connect or has a foothold on the hospital's internal network, the PwndPiper issues were deemed extremely severe due to the prevalence of TransLogic devices across North America and how easy they could be weaponized to impact a hospital's ability to provide proper medical care. The issues —listed at the bottom of this article— were discovered in May and reported to Swisslog Healthcare, Armis said. "A software update for all but one of the vulnerabilities has been developed, and specific mitigation strategies for the remaining vulnerability are available for customers," a Swisslog Healthcare spokesperson told The Record in an email. The company has released today version 7.2.5.7 of the Nexus Control Panel, along with a blog post with additional information for its customers. It also said the issue is primarily restricted to hospitals in North America, where most of these tube systems are installed, and that a patch for the ninth issue is expected later this year. Details about the nine PwndPiper vulnerabilities are listed below. The Armis team is also scheduled to present its findings at the Black Hat security conference this week, on Wednesday.
https://player.vimeo.com/video/580930696
PwnedPiper vulnerabilities:
No previous article
No new articles
Catalin Cimpanu
is a cybersecurity reporter who previously worked at ZDNet and Bleeping Computer, where he became a well-known name in the industry for his constant scoops on new vulnerabilities, cyberattacks, and law enforcement actions against hackers.
Text extracted automatically; images, tables and formatting may be missing. Original: https://therecord.media/pwnedpiper-vulnerabilities-impact-80-of-major-hospitals-in-north-america