Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-5308

Опубликовано: 04 авг. 2015
Источник: nvd
CVSS2: 10
EPSS Низкий

Описание

GE Healthcare Optima MR360 does not require authentication for the HIPAA emergency login procedure, which allows physically proximate users to gain access via an arbitrary username in the Emergency Login screen. NOTE: this might not qualify for inclusion in CVE if unauthenticated emergency access is part of the intended security policy of the product, can be controlled by the system administrator, and is not enabled by default.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:gehealthcare:optima_mr360_firmware:-:*:*:*:*:*:*:*

EPSS

Процентиль: 70%
0.0063
Низкий

10 Critical

CVSS2

Дефекты

CWE-255

Связанные уязвимости

github
больше 3 лет назад

GE Healthcare Optima MR360 does not require authentication for the HIPAA emergency login procedure, which allows physically proximate users to gain access via an arbitrary username in the Emergency Login screen. NOTE: this might not qualify for inclusion in CVE if unauthenticated emergency access is part of the intended security policy of the product, can be controlled by the system administrator, and is not enabled by default.

EPSS

Процентиль: 70%
0.0063
Низкий

10 Critical

CVSS2

Дефекты

CWE-255