Known Vulnerabilities for products from Gehealthcare

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Gehealthcare".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Additional devices specifications by Gehealthcare can be found at device.report : Gehealthcare

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2020-25179 json GE Healthcare Imaging and Ultrasound Products may allow specific credentials to be exposed during transport over the network. 9.8 - CRITICAL 2020-12-14 2021-09-23
CVE-2020-25175 json GE Healthcare Imaging and Ultrasound Products may allow specific credentials to be exposed during transport over the network. 9.8 - CRITICAL 2020-12-14 2021-04-30
CVE-2020-6966 json In ApexPro Telemetry Server Versions 4.2 and prior, CARESCAPE Telemetry Server v4.2 & prior, Clinical Information Center (CIC... 10 - CRITICAL 2020-01-24 2020-03-17
CVE-2020-6965 json In ApexPro Telemetry Server Versions 4.2 and prior, CARESCAPE Telemetry Server v4.2 & prior, Clinical Information Center (CIC... 9.9 - CRITICAL 2020-01-24 2020-03-17
CVE-2020-6964 json In ApexPro Telemetry Server Versions 4.2 and prior, CARESCAPE Telemetry Server v4.2 & prior, Clinical Information Center (CIC... 8.6 - HIGH 2020-01-24 2020-03-17
CVE-2020-6963 json In ApexPro Telemetry Server Versions 4.2 and prior, CARESCAPE Telemetry Server v4.2 & prior, Clinical Information Center (CIC... 10 - CRITICAL 2020-01-24 2020-03-17
CVE-2020-6962 json In ApexPro Telemetry Server, Versions 4.2 and prior, CARESCAPE Telemetry Server v4.2 & prior, Clinical Information Center (CI... 10 - CRITICAL 2020-01-24 2020-03-17
CVE-2020-6961 json In ApexPro Telemetry Server, Versions 4.2 and prior, CARESCAPE Telemetry Server v4.2 & prior, Clinical Information Center (CI... 10 - CRITICAL 2020-01-24 2020-03-17
CVE-2014-9736 json GE Healthcare Centricity Clinical Archive Audit Trail Repository has a default password of initinit for the (1) SSL key manag... Not Provided 2015-08-04 2026-05-06
CVE-2014-7233 json GE Healthcare Precision THUNIS-800+ has a default password of (1) 1973 for the factory default System Utilities menu, (2) TH8... Not Provided 2015-08-04 2026-05-06
CVE-2014-7232 json GE Healthcare Discovery XR656 and XR656 G2 has a password of (1) 2getin for the insite user, (2) 4$xray for the xruser user, ... Not Provided 2015-08-04 2026-05-06
CVE-2013-7442 json GE Healthcare Centricity PACS Workstation 4.0 and 4.0.1 has a password of (1) CANal1 for the Administrator user and (2) iis f... Not Provided 2015-08-04 2026-05-06
CVE-2013-7405 json The Ad Hoc Reporting feature in GE Healthcare Centricity DMS 4.2 has a password of Never!Mind for the Administrator user, whi... Not Provided 2015-08-04 2026-05-06
CVE-2013-7404 json GE Healthcare Discovery NM 750b has a password of 2getin for the insite account for (1) Telnet and (2) FTP, which has unspeci... Not Provided 2015-08-04 2026-05-06
CVE-2012-6695 json GE Healthcare Centricity PACS Workstation 4.0 and 4.0.1 has a password of ddpadmin for the ddpadmin user, which has unspecifi... Not Provided 2015-08-04 2026-05-06
CVE-2012-6694 json GE Healthcare Centricity PACS Workstation 4.0 and 4.0.1, and Server 4.0, has a password of 2charGE for the geservice account,... Not Provided 2015-08-04 2026-05-06
CVE-2012-6693 json GE Healthcare Centricity PACS 4.0 Server has a default password of (1) nasro for the nasro (ReadOnly) user and (2) nasrw for ... Not Provided 2015-08-04 2026-05-06
CVE-2012-6660 json GE Healthcare Precision MPi has a password of (1) orion for the serviceapp user, (2) orion for the clinical operator user, an... Not Provided 2015-08-04 2026-05-06
CVE-2011-5324 json The TeraRecon server, as used in GE Healthcare Centricity PACS-IW 3.7.3.7, 3.7.3.8, and possibly other versions, has a passwo... Not Provided 2015-08-04 2026-05-06
CVE-2011-5323 json GE Healthcare Centricity PACS-IW 3.7.3.7, 3.7.3.8, and possibly other versions has a password of A11enda1e for the sa SQL ser... Not Provided 2015-08-04 2026-05-06

Known software with vulnerabilities from Gehealthcare

Type Vendor Product Version
HardwareGehealthcareApexpro Telemetry Server-
Operating
System
GehealthcareApexpro Telemetry Server Firmware3.9
HardwareGehealthcareCarescape B450 Monitor-
Operating
System
GehealthcareCarescape B450 Monitor Firmware2.0
HardwareGehealthcareCarescape B650 Monitor-
Operating
System
GehealthcareCarescape B650 Monitor Firmware1.0
HardwareGehealthcareCarescape B850 Monitor-
Operating
System
GehealthcareCarescape B850 Monitor Firmware1.0
HardwareGehealthcareCarescape Central Station Mai700-
Operating
System
GehealthcareCarescape Central Station Mai700 Firmware1.0
HardwareGehealthcareCarescape Central Station Mas700-
Operating
System
GehealthcareCarescape Central Station Mas700 Firmware1.0
HardwareGehealthcareCarescape Telemetry Server Mp100r-
Operating
System
GehealthcareCarescape Telemetry Server Mp100r Firmware4.2
Operating
System
GehealthcareCentricity Dms Firmware4.0
ApplicationGehealthcareCentricity Pacs-iw3.7.3.5
HardwareGehealthcareClinical Information Center Mp100d-
Operating
System
GehealthcareClinical Information Center Mp100d Firmware4.0
HardwareGehealthcareClinical Information Center Mp100r-
Operating
System
GehealthcareClinical Information Center Mp100r Firmware4.0

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report