The Baxter Spectrum WBM does not perform mutual authentication with the gateway server host. This may allow an attacker to perform a man in the middle attack that modifies parameters making the network connection fail.
The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.
Link | Tags |
---|---|
https://www.us-cert.gov/ics/advisories/icsma-22-xxx-xx | broken link |
https://www.cisa.gov/uscert/ics/advisories/icsma-22-251-01 | third party advisory us government resource |