Hospira MedNet before 6.1 uses a hardcoded cleartext password to control SQL database authorization, which allows remote authenticated users to bypass intended access restrictions by leveraging knowledge of this password.
Metrics
Affected Vendors & Products
References
History
Mon, 03 Nov 2025 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Hospira MedNet Use of Hard-coded Password | |
| Weaknesses | CWE-259 | |
| References |
|
Status: PUBLISHED
Assigner: icscert
Published: 2015-04-03T10:00:00
Updated: 2025-11-03T18:25:50.764Z
Reserved: 2014-08-22T00:00:00
Link: CVE-2014-5405
No data.
Status : Deferred
Published: 2015-04-03T10:59:02.290
Modified: 2025-11-03T19:15:38.370
Link: CVE-2014-5405
No data.
ReportizFlow