CVE-2024-27107EUVD-2024-2435714.05.2024, 17:15Weak account password in GE HealthCare EchoPAC productsEnginsightProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVectorNISTPrimary9.6 CRITICALADJACENT_NETWORKLOWNONECVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:HGEHCCNA9.6 CRITICALADJACENT_NETWORKLOWNONECVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:HAwaiting analysisThis vulnerability is currently awaiting analysis.Base ScoreCVSS 3.xEPSS ScorePercentile: 35%Common Weakness EnumerationCWE-798 - Use of Hard-coded CredentialsThe software contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.Referenceshttps://securityupdate.gehealthcare.com/https://securityupdate.gehealthcare.com/