CVE-2002-2446: Critical severity Gehealthcare Millennium Mg Firmware vulnerability
GE Healthcare Millennium MG, NC, and MyoSIGHT has a password of insite.genieacq for the insite account that cannot be changed without disabling product functionality for remote InSite support, which has unspecified impact and attack vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2002-2446?
CVE-2002-2446 has a high security risk due to the use of a hardcoded password that cannot be changed without disabling functionality.
How do I fix CVE-2002-2446?
Fixing CVE-2002-2446 requires consulting with GE Healthcare support for guidance, as changing the password can disable product functionality.
What products are affected by CVE-2002-2446?
CVE-2002-2446 affects the GE Healthcare Millennium MG, NC, and MyoSIGHT firmware.
What is the potential impact of CVE-2002-2446?
The unspecified impact of CVE-2002-2446 could lead to unauthorized access and exploitation of the healthcare devices.
Are there any workarounds for CVE-2002-2446?
As of now, there are no public workarounds available for CVE-2002-2446 that do not compromise device functionality.