PT-2015-3590 · Netopia+1 · Timbuktu Pro+1

Scott Erven

·

Publicado

2015-08-04

·

Atualizado

2018-03-28

·

CVE-2013-7442

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions GE Healthcare Centricity PACS Workstation versions 4.0 through 4.0.1
Description The issue concerns hardcoded passwords for the Administrator and IIS users. The passwords are CANal1 for the Administrator user and iis for the IIS user. This has unspecified impact and is related to TimbuktuPro, with unclear details on whether these passwords are default, hardcoded, or dependent on another system.
Recommendations For GE Healthcare Centricity PACS Workstation versions 4.0 through 4.0.1, change the default passwords for the Administrator and IIS users to strong, unique passwords to mitigate potential risks. As a temporary workaround, consider restricting access to the system until the passwords can be changed.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2013-7442

Produtos afetados

Ge Healthcare Centricity Pacs Workstation
Timbuktu Pro