Researchers have discovered nine vulnerabilities in pneumatic tube systems used in more than 80 percent of major hospitals in North America. The bugs include hard-coded passwords, unencrypted connections and unauthenticated firmware updates that could lead to remote code execution (RCE) The flaws could let bad actors take over Nexus stations and post ransom notes on the stations displays. The Translogic PTS system, used by more than 3,000 hospitals worldwide, delivers medications, blood and lab samples throughout a hospital.
Source: https://threatpost.com/pwnedpiper-bugs-hospital-pneumatics/168277/