PT-2019-7126 · Hospira+1 · Hospira Mednet+1
Published
2019-03-26
·
Updated
2019-10-09
·
CVE-2014-5401
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Hospira MedNet software versions 5.8 and prior
Description
The issue allows unauthenticated users to execute arbitrary code on the target system due to the use of vulnerable versions of the JBoss Enterprise Application Platform software.
Recommendations
For Hospira MedNet software versions 5.8 and prior, upgrade to MedNet 6.1 to resolve the issue.
Fix
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Hospira Mednet
Red Hat Jboss Enterprise Application Platform