Medium severity6.1NVD Advisory· Published Jun 29, 2020· Updated Jun 17, 2026
CVE-2020-12024
CVE-2020-12024
Description
Baxter ExactaMix EM 2400 versions 1.10, 1.11, 1.13, 1.14 and ExactaMix EM1200 Versions 1.1, 1.2, 1.4 and 1.5 does not restrict access to the USB interface from an unauthorized user with physical access. Successful exploitation of this vulnerability may allow an attacker with physical access to the system the ability to load an unauthorized payload or unauthorized access to the hard drive by booting a live USB OS. This could impact confidentiality and integrity of the system and risk exposure of sensitive information including PHI.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
10- Baxter/ExactaMix EM 2400 / EM1200description
cpe:2.3:o:baxter:em2400_firmware:1.10:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:o:baxter:em2400_firmware:1.10:*:*:*:*:*:*:*
- cpe:2.3:o:baxter:em2400_firmware:1.11:*:*:*:*:*:*:*
- cpe:2.3:o:baxter:em2400_firmware:1.13:*:*:*:*:*:*:*
- cpe:2.3:o:baxter:em2400_firmware:1.14:*:*:*:*:*:*:*
cpe:2.3:o:baxter:em1200_firmware:1.1:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:o:baxter:em1200_firmware:1.1:*:*:*:*:*:*:*
- cpe:2.3:o:baxter:em1200_firmware:1.2:*:*:*:*:*:*:*
- cpe:2.3:o:baxter:em1200_firmware:1.4:*:*:*:*:*:*:*
- cpe:2.3:o:baxter:em1200_firmware:1.5:*:*:*:*:*:*:*
- Range: 1.10, 1.11, 1.13, 1.14
Patches
Vulnerability mechanics
References
1- www.us-cert.gov/ics/advisories/icsma-20-170-01nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.