CVE-2023-30561: Bd Alaris 8015 Pcu Firmware

Medium severity, CVSS 6.1. EPSS: 0.2% chance of exploitation in the next 30 days.

The data flowing between the PCU and its modules is insecure. A threat actor with physical access could potentially read or modify data by attaching a specially crafted device while an infusion is running.

Affected products

  • Bd Alaris 8015 Pcu Firmware: up to and including 12.1.3

Published 2023-07-13. Last modified 2026-06-17.