Vulnerabilities in GE HealthCare
13 resultsCVE-2017-14002—GE Infinia/Infinia with Hawkeye 4 medical imaging systems all current versions are affected these devices use default or hard-coded credentiEPSS 4.9%CVE-2017-14008—GE Centricity PACS RA1000, diagnostic image analysis, all current versions are affected these devices use default or hard-coded credentials.EPSS 3.1%CVE-2017-14006—GE Xeleris versions 1.0,1.1,2.1,3.0,3.1, medical imaging systems, all current versions are affected, these devices use default or hard-codedEPSS 1.9%CVE-2017-14004—GE GEMNet License server (EchoServer) all current versions are affected these devices use default or hard-coded credentials. Successful explEPSS 1.9%CVE-2024-1628HIGHOS command injection vulnerabilities in GE HealthCare ultrasound devicesEPSS 0.8%CVE-2024-27107CRITICALWeak account password in GE HealthCare EchoPAC productsEPSS 0.3%CVE-2024-27108MEDIUMNon privileged access to critical file vulnerability in GE HealthCare EchoPAC productsEPSS 0.3%CVE-2024-27109HIGHInsufficiently protected credentials in GE HealthCare EchoPAC productsEPSS 0.3%CVE-2024-27110HIGHElevation of privilege vulnerability in GE HealthCare EchoPAC productsEPSS 0.3%CVE-2024-1629MEDIUMPath traversal vulnerability in “deleteFiles” function of Common Service Desktop, a GE HealthCare ultrasound device componentEPSS 0.3%CVE-2024-1630HIGHPath traversal vulnerability in “getAllFolderContents” function of Common Service Desktop, a GE HealthCare ultrasound device componentEPSS 0.3%CVE-2024-27106MEDIUMVulnerable data in transit in GE HealthCare EchoPAC productsEPSS 0.2%CVE-2024-1486HIGHElevation of privileges via misconfigured access control list in GE HealthCare ultrasound devicesEPSS 0.2%