> ## Content Index
> Fetch the complete content index at: https://www.fdaweb.com/llms.txt
> Use this file to discover other available public pages before exploring further.

# Cyber Threats to CareFusion Pyxis System
- URL: https://www.fdaweb.com/cyber-threats-to-carefusion-pyxis-system/
- Published: 2016-04-06T12:00:00.000Z
- Updated: 2026-09-14T20:53:15.000Z
- Author: David McFarland
- Tags: Devices, #legacy-id-D5135290

> The Department of Homeland Security [says](https://ics-cert.us-cert.gov/advisories/ICSMA-16-089-01?ref=fdaweb.com) that independent researchers in collaboration with CareFusion have identified numerous third-party software vulnerabilities in end-of-life versions of the company’s Pyxis SupplyStation system. Because the affected software versions are at end-of-life, the notice says, a patch will not be provided. CareFusion is providing compensating measures to help reduce the risk of exploitation for the affected versions of the system.  
>  
> The affected products are automated supply cabinets used to dispense medical supplies that can document usage in real-time. The system includes automated devices that may be deployed using a variety of functional configurations. “The Pyxis SupplyStation systems have an architecture that typically includes a network of units, or workstations, located in various patient care areas throughout a facility and managed by the Pyxis SupplyCenter server, which links to the facility’s existing information systems,” the notice says.  
>  
> It says that the software vulnerabilities could be exploited remotely by an attacker with low skill.