Armis researchers have unearthed critical vulnerabilities in Swisslog Healthcare’s Translogic pneumatic tube system. The PTS system automates the transport lab specimens, blood products, lab tests, and medications throughout the hospital via a network. The vulnerabilities can be triggered by sending unauthenticated network packets. The most severe of the discovered vulnerabilities (CVE-2021-37160) can allow an attacker to maintain persistence on compromised PTS stations, allowing him to hold the stations hostage, until a ransom is paid.
Source: https://www.helpnetsecurity.com/2021/08/02/vulnerabilities-pneumatic-tube-system-pwnedpiper/

