Back to Database
Status published
Low
CVE-2023-29066
Incorrect User Management
Vulnerability Description
The FACSChorus software does not properly assign data access privileges for operating system user accounts. A non-administrative OS account can modify information stored in the local application data folders.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-29066
Credits & Attribution
No credits recorded in the NVD database.
More from Becton, Dickinson and Company (BD)
View All →Affected Vendor
Becton, Dickinson and Company (BD)
View all reports →Affected Software
FACSChorus
Vulnerable Versions:
5.0
Timeline
Official Publish:
November 28th, 2023
Last Modified:
February 25th, 2026
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L