Medium severity4.3NVD Advisory· Published Sep 13, 2022· Updated Jun 17, 2026
CVE-2022-38069
CVE-2022-38069
Description
Multiple globally default credentials exist across all CMS8000 devices, that once exposed, allow a threat actor with momentary physical access to gain privileged access to any device. Privileged credential access enables the extraction of sensitive patient information or modification of device parameters
Affected products
2- Contec Health/CMS8000 CONTEC ICU CCU Vital Signs Patient Monitorv5Range: All
Patches
Vulnerability mechanics
References
1- www.cisa.gov/uscert/ics/advisories/icsma-22-244-01nvdMitigationThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.