Vulnonym.com

CVE-2012-6695 - Concealable Decrement

Description

GE Healthcare Centricity PACS Workstation 4.0 and 4.0.1 has a password of ddpadmin for the ddpadmin user which has unspecified impact and attack vectors. NOTE: it is not clear whether this password is default hardcoded or dependent on another system or product that requires a fixed value.

Reference

https://twitter.com/digitalbond/status/619250429751222277 http://www.forbes.com/sites/thomasbrewster/2015/07/10/vulnerable-breasts/ http://apps.gehealthcare.com/servlet/ClientServlet/C401_WS_INST_SV_2069560001r1.pdf?REQ=RAA&DIRECTION=2069560-001&FILENAME=C401_WS_INST_SV_2069560001r1.pdf&FILEREV=1&DOCREV_ORG=1 http://apps.gehealthcare.com/servlet/ClientServlet/C40_WS_INST_SV_2063534-001r2.pdf?REQ=RAA&DIRECTION=2063534-001&FILENAME=C40_WS_INST_SV_2063534-001r2.pdf&FILEREV=1&DOCREV_ORG=1 https://ics-cert.us-cert.gov/advisories/ICSMA-18-037-02