CVE-2010-5307: Critical severity ge healthcare optima mr360 firmware vulnerability
The HIPAA configuration interface in GE Healthcare Optima MR360 has a password of (1) operator for the root account, (2) adw2.0 for the admin account, and (3) adw2.0 for the sdc account, which has unspecified impact and attack vectors. NOTE: it is not clear whether these passwords are default, hardcoded, or dependent on another system or product that requires a fixed value.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-5307?
CVE-2010-5307 is considered a high-severity vulnerability due to the use of weak passwords for critical accounts.
How do I fix CVE-2010-5307?
To mitigate CVE-2010-5307, change the default passwords for the root, admin, and sdc accounts to strong, unique passwords.
What systems are affected by CVE-2010-5307?
CVE-2010-5307 affects the GE Healthcare Optima MR360 firmware.
What are the implications of CVE-2010-5307?
The implications of CVE-2010-5307 include potential unauthorized access to sensitive healthcare configurations and data.
Is CVE-2010-5307 a default configuration vulnerability?
CVE-2010-5307 may stem from default password settings, but it is unclear whether these are factory defaults or hard-coded.