Skip to content

GE Healthcare Centricity Image Vault 3.x has a password...

High severity Unreviewed Published Apr 29, 2022 to the GitHub Advisory Database • Updated Apr 12, 2025

Package

No package listedSuggest a package

Affected versions

Unknown

Patched versions

Unknown

Description

GE Healthcare Centricity Image Vault 3.x has a password of (1) gemnet for the administrator account, (2) webadmin for the webadmin administrator account of the ASACA DVD library, (3) an empty value for the gemsservice account of the Ultrasound Database, and possibly (4) gemnet2002 for the gemnet2002 account of the GEMNet license server, which has unspecified impact and attack vectors. NOTE: it is not clear whether this password is default, hardcoded, or dependent on another system or product that requires a fixed value.

References

Published by the National Vulnerability Database Aug 4, 2015
Published to the GitHub Advisory Database Apr 29, 2022
Last updated Apr 12, 2025

Severity

High

EPSS score

Exploit Prediction Scoring System (EPSS)

This score estimates the probability of this vulnerability being exploited within the next 30 days. Data provided by FIRST.
(61st percentile)

Weaknesses

No CWEs

CVE ID

CVE-2004-2777

GHSA ID

GHSA-crx7-hrf2-c28r

Source code

No known source code

Dependabot alerts are not supported on this advisory because it does not have a package from a supported ecosystem with an affected and fixed version.

Learn more about GitHub language support

Loading Checking history
See something to contribute? Suggest improvements for this vulnerability.