CVE-2013-7442: Critical severity Gehealthcare Centricity Pacs Workstation vulnerability
GE Healthcare Centricity PACS Workstation 4.0 and 4.0.1 has a password of (1) CANal1 for the Administrator user and (2) iis for the IIS user, which has unspecified impact and attack vectors related to TimbuktuPro. NOTE: it is not clear whether this password is default, hardcoded, or dependent on another system or product that requires it.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-7442?
The severity of CVE-2013-7442 is currently unspecified, but it relates to hardcoded passwords in GE Healthcare Centricity PACS Workstation.
How do I fix CVE-2013-7442?
To fix CVE-2013-7442, you should change the default passwords for the Administrator and IIS users in the Centricity PACS Workstation.
What software versions are affected by CVE-2013-7442?
CVE-2013-7442 affects GE Healthcare Centricity PACS Workstation versions 4.0 and 4.0.1.
What impact could CVE-2013-7442 have on security?
CVE-2013-7442 could potentially allow unauthorized access to sensitive patient data due to weak passwords.
What types of attacks are associated with CVE-2013-7442?
CVE-2013-7442 is related to unspecified attack vectors involving the weak passwords of Administrator and IIS user accounts.