目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1000 CNY

100.0%

GE HealthCare 厂商漏洞列表 / CVE 中文分析 13

GE HealthCare 厂商相关 13 条 CVE 漏洞,含 AI 中文分析、POC、CVSS 评分与受影响产品。

GE Healthcare 专注于医疗设备与数字化医疗解决方案,为临床诊断、患者监护及医疗信息系统提供技术支持。历史上,其产品常见漏洞包括远程代码执行、跨站脚本请求伪造及权限绕过等安全风险。2022 年,其 Centricity RIS/PIS 系统曾曝出高危漏洞,允许攻击者获取未授权访问。截至最新统计,该厂商相关产品已记录 13 条 CVE 漏洞,医疗设备安全防护仍需加强。

CVE IDタイトルCVSS深刻度公開日
CVE-2024-27110 Elevation of privilege vulnerability in GE HealthCare EchoPAC products — EchoPAC Software OnlyCWE-250 8.4 High2024-05-14
CVE-2024-27109 Insufficiently protected credentials in GE HealthCare EchoPAC products — EchoPAC Software OnlyCWE-522 7.6 High2024-05-14
CVE-2024-27108 Non privileged access to critical file vulnerability in GE HealthCare EchoPAC products — EchoPAC Software OnlyCWE-732 6.8 Medium2024-05-14
CVE-2024-27107 Weak account password in GE HealthCare EchoPAC products — EchoPAC Software OnlyCWE-798 9.6 Critical2024-05-14
CVE-2024-27106 Vulnerable data in transit in GE HealthCare EchoPAC products — EchoPAC Software OnlyCWE-311 5.7 Medium2024-05-14
CVE-2024-1630 Path traversal vulnerability in “getAllFolderContents” function of Common Service Desktop, a GE HealthCare ultrasound device component — VenueCWE-22 7.7 High2024-05-14
CVE-2024-1629 Path traversal vulnerability in “deleteFiles” function of Common Service Desktop, a GE HealthCare ultrasound device component — VenueCWE-22 6.2 Medium2024-05-14
CVE-2024-1628 OS command injection vulnerabilities in GE HealthCare ultrasound devices — VenueCWE-78 8.4 High2024-05-14
CVE-2024-1486 Elevation of privileges via misconfigured access control list in GE HealthCare ultrasound devices — VenueCWE-732 7.4 High2024-05-14
CVE-2017-14002 GE Infinia/Infinia with Hawkeye 4 安全漏洞 — GE InfiniaCWE-287 9.8 -2018-03-20
CVE-2017-14004 GE 安全漏洞 — GE GEMNet License server aka. (EchoServer)CWE-287 9.8 -2018-03-20
CVE-2017-14006 GE Xeleris 安全漏洞 — GE XelerisCWE-287 9.8 -2018-03-20
CVE-2017-14008 GE Centricity PACS RA1000 授权问题漏洞 — GE Centricity PACS RA1000CWE-287 9.8 -2018-03-20

本页汇总了 GE HealthCare 厂商截至目前公开的全部 13 条 CVE 漏洞。每条漏洞均包含 CVSS 评分、CWE 弱点分类、受影响产品与参考链接,并附带 AI 生成的中文分析以便快速判断风险。