HIGH🇵🇱 Wersja polska

CVE-2004-2777

CVSS 10.0v2.0pub. 2015-08-04upd. 2026-05-06

GE Healthcare Centricity Image Vault 3.x has a password of (1) gemnet for the administrator account, (2) webadmin for the webadmin administrator account of the ASACA DVD library, (3) an empty value for the gemsservice account of the Ultrasound Database, and possibly (4) gemnet2002 for the gemnet2002 account of the GEMNet license server, which has unspecified impact and attack vectors. NOTE: it is not clear whether this password is default, hardcoded, or dependent on another system or product that requires a fixed value.

CVSS Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
  • Gehealthcare Centricity Image Vault Firmware

    OS
    Gehealthcare
    all versions
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2020-25179CRITICAL9.8PL ✓same vendor

Ujawnienie poświadczeń uwierzytelnienia w produktach GE Healthcare podczas transmisji sieciowej

CVE-2020-25175CRITICAL9.8PL ✓same vendor

Ujawnienie poświadczeń podczas transmisji sieciowej w urządzeniach GE Healthcare

CVE-2020-6962CRITICAL10.0PL ✓same vendor

RCE poprzez brak walidacji danych wejściowych w GE Healthcare — systemy telemetryczne

CVE-2020-6961CRITICAL10.0PL ✓same vendor

Ujawnienie klucza prywatnego SSH w produktach GE Healthcare

CVE-2020-6963CRITICAL10.0PL ✓same vendor

GE Healthcare: zakodowane dane SMB umożliwiające RCE