
Information Technology Advisory Services
Bayer Cybersecurity News
As your partners in cybersecurity, we are committed to providing ongoing updates related to cybersecurity surveillance and response. Review the latest technology advisory notices by year.
- MEDRAD® Stellant CT Injection System with Certegra® Workstation
- MEDRAD® MRXperion MR Injection System
- MEDRAD® lntego PET Infusion System (200 RDMS)
- MEDRAD® Centargo CT Injection System
- MEDRAD® Stellant FLEX CT Injection System
- MEDRAD® Stellant CT Injection System (Classic Models)
- MEDRAD® Spectris Solaris EP MR Injection System
- MEDRAD® Mark 7 Arterion Injection System
- MEDRAD® Avanta Fluid Management Injection System
- Remote connectivity hardware (VirtualCARE® Box)
- Bayer is in the process of validating and releasing a patch for the Windows SPNEGO Extended Negotiation (NEGOEX) vulnerability for use with its devices.
- Bayer's Technical Assistance Center may deliver the patch to customer devices with an active connection for remote support. Remote patch delivery should result in minimal workflow disruption.
- If you wish to connect your device to receive the patch, a self-connection guide is located here - Connectivity Guide.
- If your unit cannot be patched remotely, you may request a local Bayer Service Representative to schedule an onsite service outside of your Preventative Maintenance or next Emergency Service visit. Additional travel and labor charges may apply.
- Alternatively, you may contact the Bayer Connectivity Team at tacvirtualcare@bayer.com to connect your device and receive the patch at no charge.
- The lntego injector does not have the capability to be patched remotely. You may request a local Bayer Service Representative to schedule an onsite service outside of your Preventative Maintenance or next Emergency Service visit.
- MEDRAD® Stellant FLEX CT Injection System
- MEDRAD® Stellant CT Injection System with Certegra® Workstation
- MEDRAD® MRXperion MR Injection System
- Bayer has validated and released a patch for the vulnerability for use with its devices.
- Bayer's Technical Assistance Center may deliver the patch to customer devices with an active VirtualCare Remote Support connection. Remote patch delivery should result in minimal workflow disruption.
- Standalone devices or devices that are connected to the facility’s internal network, but not with VirtualCARE Remote Support, cannot be patched remotely.
- If your unit cannot be patched remotely, please contact the Bayer Connectivity Team: tacvirtualcare@bayer.com to receive the patch. Alternatively, please contact our support team at 1-800-633-7237, x1 to schedule Bayer Service. Remote patch delivery should result in minimal workflow disruption.
November, 2025
Windows SPNEGO Extended Negotiation (NEGOEX) RCE Vulnerability CVE-2025-47981
Bayer is aware of the recently disclosed remote code execution vulnerabilities affecting the Windows SPNEGO Extended Negotiation (NEGOEX) vulnerability (CVE-2025-47981). These vulnerabilities may allow attackers to remotely execute arbitrary commands on the hosting server.
The Bayer Radiology Cybersecurity team has concluded a full risk and vulnerability assessment to determine the potential impact on the safety and effectiveness of Bayer Radiology products. For Bayer Injection Systems, the safety risk remains low and acceptable; however, mitigation is required to address data security.
Bayer Device Impact
After conducting a thorough analysis, we have determined that the following Bayer devices contain a vulnerable version related to the Windows SPNEGO Extended Negotiation (NEGOEX) vulnerability (CVE-2025-47981):
The Windows SPNEGO Extended Negotiation (NEGOEX) vulnerability does not pose a threat to the following Bayer devices:
Mitigation Strategy
To date, we have not been notified that the operation of any Bayer device has been adversely impacted due to the Windows SPNEGO Extended Negotiation (NEGOEX) vulnerability (CVE-2025-47981). However, to mitigate any potential future risk, we will implement one of the actions outlined below to ensure that the Windows SPNEGO Extended Negotiation (NEGOEX) vulnerability is addressed in all fielded Bayer devices in a timely manner.
Action 1: Patch deployment to Bayer devices with active remote connection to Bayer's Technical Assistance Center.
Action 2: Patch deployment to Bayer devices without connectivity for remote support. Standalone devices or devices that are connected to the facility's internal network, but not with Bayer, cannot be remotely patched.
Action 3: MEDRAD® lntego PET Infusion System (200 RDMS)
Important Notice: To ensure that you receive the necessary security patch for the Windows SPNEGO Extended Negotiation (NEGOEX) vulnerability, please keep your devices turned on and connected starting Monday, November 17th. The patch is expected to be deployed between November 17th and December 1st. Having your device connected will facilitate timely updates and help maintain the security of your systems.
Product security and safety are of utmost importance to Bayer. We will continue to provide updates related to the Windows SPNEGO Extended Negotiation (NEGOEX) vulnerability and patch deployment processes, as needed.
If you have immediate questions or concerns, please contact our support team at 1-800-633-7237, ext.1.
February 29, 2024
Important Update on Mirth Connect Cybersecurity Vulnerability
The purpose of this advisory is to provide an update regarding the Mirth Connect cybersecurity vulnerability.
Bayer has performed an initial assessment of the recently disclosed remote code execution vulnerabilities affecting Mirth Connect versions prior to 4.4.1 (CVE-2023-37679 and CVE-2023-43208).
After conducting a thorough analysis, we have determined that the following Bayer devices contain a vulnerable version of Mirth Connect:
To date, we have not been notified that the operation of any Bayer device has been adversely impacted due to the Mirth Connect vulnerability.
Overview of Bayer response:
To mitigate any future risk potential, Bayer will take one of the two actions outlined below to ensure that the Mirth Connect vulnerability is addressed in all fielded Bayer devices.
Action 1: Patch deployment to Bayer devices connected to VirtualCARE® Remote Support.
Action 2: Patch deployment to Bayer devices not connected to VirtualCARE Remote Support.
For customers under a service agreement, the solution will be installed on your next service event. Customers without a service agreement can contact our support team at 1-800-633-7237, x1 to schedule Bayer Service.