HIGH🇵🇱 Wersja polska

CVE-2002-2446

CVSS 10.0v2.0pub. 2015-08-04upd. 2026-05-06

GE Healthcare Millennium MG, NC, and MyoSIGHT has a password of insite.genieacq for the insite account that cannot be changed without disabling product functionality for remote InSite support, which has unspecified impact and attack vectors.

CVSS Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
  • Gehealthcare Millennium Mg Firmware

    OS
    Gehealthcare
    all versions
  • Gehealthcare Millennium Myosight Firmware

    OS
    Gehealthcare
    all versions
  • Gehealthcare Millennium Nc Firmware

    OS
    Gehealthcare
    all versions
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2020-25179CRITICAL9.8PL ✓same vendor

Ujawnienie poświadczeń uwierzytelnienia w produktach GE Healthcare podczas transmisji sieciowej

CVE-2020-25175CRITICAL9.8PL ✓same vendor

Ujawnienie poświadczeń podczas transmisji sieciowej w urządzeniach GE Healthcare

CVE-2020-6962CRITICAL10.0PL ✓same vendor

RCE poprzez brak walidacji danych wejściowych w GE Healthcare — systemy telemetryczne

CVE-2020-6961CRITICAL10.0PL ✓same vendor

Ujawnienie klucza prywatnego SSH w produktach GE Healthcare

CVE-2020-6963CRITICAL10.0PL ✓same vendor

GE Healthcare: zakodowane dane SMB umożliwiające RCE