#VU100583 Improper Restriction of Excessive Authentication Attempts in Life2000 Ventilation System - CVE-2024-9832
Published: November 18, 2024
Life2000 Ventilation System
Baxter
Description
The vulnerability allows a local attacker to compromise the target system.
The vulnerability exists due to improper restriction of excessive authentication attempts within the Clinician Password or the Serial Number Clinician Password. A local attacker can conduct brute force attacks to gain unauthorized access to the ventilator and gain access to the system.