← back
CVE-2014-5405CWE-259

Hospira MedNet Use of Hard-coded Password

28Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 9epss 2.3%
exploitation probability
2.3%top 18% of all CVEs
observed exploitation
nono source reports it
Hospira MedNet before 6.1 uses a hardcoded cleartext password to control SQL database authorization, which allows remote authenticated users to bypass intended access restrictions by leveraging knowledge of this password.
AV:N/AC:L/Au:S/C:C/I:C/A:C
Affected products
Hospira · MedNet