Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2015-08-04 CVE-2009-5143 Credentials Management vulnerability in Gehealthcare Discovery 530C Firmware
GE Healthcare Discovery 530C has a password of #bigguy1 for the (1) acqservice user and (2) wsservice user of the Xeleris System, which has unspecified impact and attack vectors.
network
low complexity
gehealthcare CWE-255
critical
10.0
2015-08-04 CVE-2007-6757 Credentials Management vulnerability in Gehealthcare Centricity DMS Firmware 4.0/4.1/4.2
GE Healthcare Centricity DMS 4.2, 4.1, and 4.0 has a password of Muse!Admin for the Museadmin user, which has unspecified impact and attack vectors.
network
low complexity
gehealthcare CWE-255
critical
10.0
2015-08-04 CVE-2006-7253 Credentials Management vulnerability in Gehealthcare Infinia II
GE Healthcare Infinia II has a default password of (1) infinia for the infinia user, (2) #bigguy1 for the acqservice user, (3) dont4get2 for the Administrator user, (4) #bigguy1 for the emergency user, and (5) 2Bfamous for the InfiniaAdmin user, which has unspecified impact and attack vectors.
network
low complexity
gehealthcare CWE-255
critical
10.0
2015-08-04 CVE-2004-2777 Credentials Management vulnerability in Gehealthcare Centricity Image Vault Firmware
GE Healthcare Centricity Image Vault 3.x has a password of (1) gemnet for the administrator account, (2) webadmin for the webadmin administrator account of the ASACA DVD library, (3) an empty value for the gemsservice account of the Ultrasound Database, and possibly (4) gemnet2002 for the gemnet2002 account of the GEMNet license server, which has unspecified impact and attack vectors.
network
low complexity
gehealthcare CWE-255
critical
10.0
2015-08-04 CVE-2003-1603 Credentials Management vulnerability in Gehealthcare Discovery VH
GE Healthcare Discovery VH has a default password of (1) interfile for the ftpclient user of the Interfile server or (2) "2" for the LOCAL user of the FTP server for the Codonics printer, which has unspecified impact and attack vectors.
network
low complexity
gehealthcare CWE-255
critical
10.0
2015-08-04 CVE-2002-2446 Credentials Management vulnerability in Gehealthcare products
GE Healthcare Millennium MG, NC, and MyoSIGHT has a password of insite.genieacq for the insite account that cannot be changed without disabling product functionality for remote InSite support, which has unspecified impact and attack vectors.
network
low complexity
gehealthcare CWE-255
critical
10.0
2015-08-04 CVE-2002-2445 Denial-Of-Service vulnerability in Gehealthcare Millennium MG, Millennium Myosight and Millennium NC
GE Healthcare Millennium MG, NC, and MyoSIGHT has a default password of (1) root.genie for the root user, (2) "service." for the service user, (3) admin.genie for the admin user, (4) reboot for the reboot user, and (5) shutdown for the shutdown user, which has unspecified impact and attack vectors.
network
low complexity
gehealthcare
critical
10.0
2015-08-04 CVE-2001-1594 Credentials Management vulnerability in Gehealthcare Entegra P&R
GE Healthcare eNTEGRA P&R has a password of (1) entegra for the entegra user, (2) passme for the super user of the Polestar/Polestar-i Starlink 4 upgrade, (3) 0 for the entegra user of the Codonics printer FTP service, (4) eNTEGRA for the eNTEGRA P&R user account, (5) insite for the WinVNC Login, and possibly other accounts, which has unspecified impact and attack vectors.
network
low complexity
gehealthcare CWE-255
critical
10.0
2015-08-03 CVE-2015-4935 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in IBM Tivoli Storage Manager Fastback
Stack-based buffer overflow in the server in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.12.1 allows remote attackers to execute arbitrary code via a crafted packet, a different vulnerability than CVE-2015-4931, CVE-2015-4932, CVE-2015-4933, and CVE-2015-4934.
network
low complexity
ibm CWE-119
critical
10.0
2015-08-03 CVE-2015-4934 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in IBM Tivoli Storage Manager Fastback
Stack-based buffer overflow in the server in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.12.1 allows remote attackers to execute arbitrary code via a crafted packet, a different vulnerability than CVE-2015-4931, CVE-2015-4932, CVE-2015-4933, and CVE-2015-4935.
network
low complexity
ibm CWE-119
critical
10.0