CVE-2011-5324: Critical severity ge healthcare centricity pacs-iw vulnerability
The TeraRecon server, as used in GE Healthcare Centricity PACS-IW 3.7.3.7, 3.7.3.8, and possibly other versions, has a password of (1) shared for the shared user and (2) scan for the scan user, which has unspecified impact and attack vectors. NOTE: it is not clear whether this password is default, hardcoded, or dependent on another system or product that requires a fixed value.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-5324?
CVE-2011-5324 is considered a vulnerability due to the use of weak default passwords.
How do I fix CVE-2011-5324?
To fix CVE-2011-5324, change the default passwords for the 'shared' and 'scan' user accounts to strong, unique passwords.
Which versions of software are affected by CVE-2011-5324?
CVE-2011-5324 affects GE Healthcare Centricity PACS-IW versions 3.7.3.7 and 3.7.3.8.
What are the attack vectors associated with CVE-2011-5324?
The unspecified attack vectors for CVE-2011-5324 could involve unauthorized access due to weak passwords.
Is CVE-2011-5324 limited to GE Healthcare products only?
Yes, CVE-2011-5324 specifically relates to the TeraRecon server used in GE Healthcare products.