CVE-2014-5420: Carefusion Pyxis Supplystation

Low severity, CVSS 3.5. EPSS: 0.9% chance of exploitation in the next 30 days.

CareFusion Pyxis SupplyStation 8.1 with hardware test tool before 1.0.16 has a hardcoded application password, which makes it easier for remote authenticated users to obtain application-file access via unspecified vectors.

Affected products

Published 2014-10-19. Last modified 2026-06-17.