| Summary | The ventilator and the Service PC lack sufficient audit logging capabilities to allow for detection of malicious activity and subsequent forensic examination. An attacker with access to the ventilator and/or the Service PC could, without detection, make unauthorized changes to ventilator settings that result in unauthorized disclosure of information and/or have unintended impacts on device performance. |
|---|---|
| Publication Date | Nov. 15, 2024, 7:15 a.m. |
| Registration Date | Nov. 15, 2024, noon |
| Last Update | Nov. 15, 2024, 10:58 p.m. |