Medium severity5.5NVD Advisory· Published Sep 9, 2022· Updated Jun 17, 2026
CVE-2022-26394
CVE-2022-26394
Description
The Baxter Spectrum WBM does not perform mutual authentication with the gateway server host. This may allow an attacker to perform a man in the middle attack that modifies parameters making the network connection fail.
Affected products
10cpe:2.3:o:baxter:spectrum_wireless_battery_module_firmware:*:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:o:baxter:spectrum_wireless_battery_module_firmware:*:*:*:*:*:*:*:*range: >=20d29,<=20d32
- cpe:2.3:o:baxter:spectrum_wireless_battery_module_firmware:16:*:*:*:*:*:*:*
- cpe:2.3:o:baxter:spectrum_wireless_battery_module_firmware:16d38:*:*:*:*:*:*:*
- cpe:2.3:o:baxter:spectrum_wireless_battery_module_firmware:17:*:*:*:*:*:*:*
- cpe:2.3:o:baxter:spectrum_wireless_battery_module_firmware:17d19:*:*:*:*:*:*:*
- cpe:2.3:o:baxter:sigma_spectrum_35700bax_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:baxter:sigma_spectrum_35700bax2_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:baxter:baxter_spectrum_iq_35700bax3_firmware:-:*:*:*:*:*:*:*
- Range: 16
Patches
Vulnerability mechanics
References
2- www.cisa.gov/uscert/ics/advisories/icsma-22-251-01nvdThird Party AdvisoryUS Government Resource
- www.us-cert.gov/ics/advisories/icsma-22-xxx-xxnvdBroken Link
News mentions
0No linked articles in our index yet.