HIGH🇬🇧 English

CVE-2004-2777

CVSS 10.0v2.0pub. 2015-08-04upd. 2026-05-06

GE Healthcare Centricity Image Vault 3.x has a password of (1) gemnet for the administrator account, (2) webadmin for the webadmin administrator account of the ASACA DVD library, (3) an empty value for the gemsservice account of the Ultrasound Database, and possibly (4) gemnet2002 for the gemnet2002 account of the GEMNet license server, which has unspecified impact and attack vectors. NOTE: it is not clear whether this password is default, hardcoded, or dependent on another system or product that requires a fixed value.

oryginał EN
CVSS Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
  • Gehealthcare Centricity Image Vault Firmware

    OS
    Gehealthcare
    wszystkie wersje
🔵
ZWERYFIKUJ U PRODUCENTA
Brak jednoznacznych danych o patchu. Sprawdź referencje od producenta.
CWE
Referencje

Powiązane podatności

CVE-2020-25179CRITICAL9.8PL ✓ten sam vendor

Ujawnienie poświadczeń uwierzytelnienia w produktach GE Healthcare podczas transmisji sieciowej

CVE-2020-25175CRITICAL9.8PL ✓ten sam vendor

Ujawnienie poświadczeń podczas transmisji sieciowej w urządzeniach GE Healthcare

CVE-2020-6962CRITICAL10.0PL ✓ten sam vendor

RCE poprzez brak walidacji danych wejściowych w GE Healthcare — systemy telemetryczne

CVE-2020-6961CRITICAL10.0PL ✓ten sam vendor

Ujawnienie klucza prywatnego SSH w produktach GE Healthcare

CVE-2020-6963CRITICAL10.0PL ✓ten sam vendor

GE Healthcare: zakodowane dane SMB umożliwiające RCE