Severity Rating: HIGH
Systems Affected

GE Imaging and Ultrasound Products
Overview

A vulnerability has been reported in GE Imaging and Ultrasound Products
which could allow a remote attacker to gain access or modify the sensitive
information on the targeted system.

Description

1. Information Disclosure Vulnerability ( CVE-2020-25175   ) 

This vulnerability exists in GE Healthcare Imaging and Ultrasound Products
due to unprotected transport of credentials. A remote attacker could
exploit this vulnerability by gaining access to the network.
Successful exploitation of this vulnerability could allow attacker to gain
access to sensitive information on the targeted system. 

2. Information Disclosure Vulnerability ( CVE-2020-25179   ) 

This vulnerability exists in GE Healthcare Imaging and Ultrasound Products
because they allow exposed/default credentials to be utilized to access the
system. An attacker could exploit this vulnerability by gaining access to
the network. 
Successful exploitation of this vulnerability could allow attacker to gain
access or modify the sensitive information on the targeted system.

Solution

GE recommends users refer to the GE Healthcare Product Security Portal. 


Vendor Information

GE Healthcare

References

GE Healthcare

CVE Name
CVE-2020-25175
CVE-2020-25179

About Cert Advisory

We have created this blog to provide latest security advisory from the india cert for the security vulnerability, threats, attacks and patching required to mitigate any kind of cyber attacks.

Related Posts

© Copyright 2020. Designed By Templateify

© Copyright 2020. Ud64

Scroll to Top