CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:L/Au:N/C:C/I:C/A:C
AI Score
Confidence
Low
EPSS
Percentile
79.6%
GE Healthcare Centricity DMS 4.2, 4.1, and 4.0 has a password of Muse!Admin for the Museadmin user, which has unspecified impact and attack vectors. NOTE: it is not clear whether this password is default, hardcoded, or dependent on another system or product that requires a fixed value.
Vendor | Product | Version | CPE |
---|---|---|---|
gehealthcare | centricity_dms_firmware | 4.0 | cpe:2.3:o:gehealthcare:centricity_dms_firmware:4.0:*:*:*:*:*:*:* |
gehealthcare | centricity_dms_firmware | 4.1 | cpe:2.3:o:gehealthcare:centricity_dms_firmware:4.1:*:*:*:*:*:*:* |
gehealthcare | centricity_dms_firmware | 4.2 | cpe:2.3:o:gehealthcare:centricity_dms_firmware:4.2:*:*:*:*:*:*:* |
apps.gehealthcare.com/servlet/ClientServlet/2019295-133D.pdf?REQ=RAA&DIRECTION=2019295-133D&FILENAME=2019295-133D.pdf&FILEREV=D&DOCREV_ORG=D
apps.gehealthcare.com/servlet/ClientServlet/2019295-133G.pdf?REQ=RAA&DIRECTION=2019295-133&FILENAME=2019295-133G.pdf&FILEREV=G&DOCREV_ORG=G
apps.gehealthcare.com/servlet/ClientServlet/DMS+Sys+Mgmt+Manual.pdf?REQ=RAA&DIRECTION=DOC1258180&FILENAME=DMS%2BSys%2BMgmt%2BManual.pdf&FILEREV=3&DOCREV_ORG=3
www.forbes.com/sites/thomasbrewster/2015/07/10/vulnerable-breasts/
ics-cert.us-cert.gov/advisories/ICSMA-18-037-02
twitter.com/digitalbond/status/619250429751222277