PT-2024-3658 · Ge Healthcare · Ge Healthcare Echopac

Published

2024-02-19

·

Updated

2024-05-14

·

CVE-2024-27106

CVSS v2.0

6.1

Medium

VectorAV:A/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions GE HealthCare EchoPAC products (affected versions not specified)
Description The issue concerns vulnerable data in transit in GE HealthCare EchoPAC products, which is related to the lack of encryption measures. This could allow a remote attacker to gain unauthorized access to protected information.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Missing Encryption of Sensitive Data

Weakness Enumeration

Related Identifiers

BDU:2024-03999
CVE-2024-27106

Affected Products

Ge Healthcare Echopac