True, but it also talks of remote code execution. Having access to a "trusted" device such as this which is generally behind the firewalls and being able to run arbitrary code on it means you have a platform to attack other devices on the same network.

Sure, defence in depth is a real thing and your IPS and other internal security systems should/might help but my point is about the c*nts out there that attack medical and life-essential devices for their own means, be it ransom, information or just for kicks.

