CVE-2024-10476

Published Dec 17, 2024

Last updated 2 months ago

Overview

Description
Default credentials are used in the above listed BD Diagnostic Solutions products. If exploited, threat actors may be able to access, modify or delete data, including sensitive information such as protected health information (PHI) and personally identifiable information (PII). Exploitation of this vulnerability may allow an attacker to shut down or otherwise impact the availability of the system. Note: BD Synapsys™ Informatics Solution is only in scope of this vulnerability when installed on a NUC server. BD Synapsys™ Informatics Solution installed on a customer-provided virtual machine or on the BD Kiestra™ SCU hardware is not in scope.
Source
cybersecurity@bd.com
NVD status
Received

Risk scores

CVSS 3.1

Type
Secondary
Base score
8
Impact score
5.9
Exploitability score
2.1
Vector string
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Severity
HIGH

Weaknesses

cybersecurity@bd.com
CWE-1392

Social media

Hype score
Not currently trending
  1. 🚨 CVE-2024-10476 (Published: 2024-12-17) - A high-severity vulnerability affects Becton, Dickinson and Company diagnostic solutions. Ensure your systems are updated to the latest versions to mitigate risks. For detailed remediation steps, visit: https://t.co/potKiXh9Yj… https://

    @transilienceai

    19 Dec 2024

    205 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. CVE-2024-10476 (Published: 2024-12-17) - A high-severity vulnerability affects Becton, Dickinson and Company diagnostic solutions. Ensure your systems are updated to the latest versions to mitigate risks. For detailed remediation steps, visit: https://t.co/potKiXh9Yj… https://t.c

    @transilienceai

    19 Dec 2024

    182 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. 🚨 CVE-2024-10476 (Published: 2024-12-17) - A high-severity vulnerability affecting Becton, Dickinson and Company's diagnostic solutions. Ensure your systems are updated to the latest versions to mitigate risks. For detailed remediation steps, visit: https://t.co/potKiXh9Yj… http

    @transilienceai

    19 Dec 2024

    180 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  4. CVE-2024-10476 Default Credentials Exploit Risks Data Breach in BD Diagnostic Solutions Default credentials are a vulnerability in the BD Diagnostic Solutions products mentioned. If threat actors exploit this, th... https://t.co/gE7KOwwg8k

    @VulmonFeeds

    17 Dec 2024

    3 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. CVE-2024-10476 Default credentials are used in the above listed BD Diagnostic Solutions products. If exploited, threat actors may be able to access, modify or delete data, including… https://t.co/zuUDg35s0v

    @CVEnew

    17 Dec 2024

    350 Impressions

    2 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes