CyberSec.Space Logo
CVEブラウザに戻る

CVE-2010-5308

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1500%
EPSS Percentile13.68th
Published2015年8月4日
Last Modified2026年5月6日

Vulnerability Description

GE Healthcare Optima MR360 does not require authentication for the HIPAA emergency login procedure, which allows physically proximate users to gain access via an arbitrary username in the Emergency Login screen. NOTE: this might not qualify for inclusion in CVE if unauthenticated emergency access is part of the intended security policy of the product, can be controlled by the system administrator, and is not enabled by default.

Affected Platforms (CPE)

💻
Gehealthcare

Optima Mr360 Firmware

All versions

References & Advisories

関連する脆弱性情報