The US Cybersecurity and Infrastructure Security Agency (CISA) and Food and Drug Administration (FDA) have warned hospitals about a backdoor discovered in patient monitors sold by Chinese firm Contec Medical. The Contec CMS8000 devices, also sold under other labels, could allow remote code execution and device modification. The backdoor poses a risk to patient safety as it could alter the monitor’s configuration and lead to incorrect responses to vital signs. The FDA and CISA are working with Contec to correct these vulnerabilities.

400+ SAP NetWeaver Devices Vulnerable to 0-Day Attacks that Exploited in the Wild
Shadow Servers have identified 454 vulnerable SAP NetWeaver systems affected by a critical zero-day flaw, CVE-2025-31324, allowing unauthenticated file uploads and potential system compromise. Discovered