Episode 174: GE’s Very Bad Day – Unpacking the MDHex Vulnerabilities
ID: 97e3e279-558a-551b-8912-beaebd35b2a3
STIX ID: report--97e3e279-558a-551b-8912-beaebd35b2a3
Feed Name: Security Ledger
Threat Score
CyberMDX discovered and coordinated disclosure with GE and DHS of six critical vulnerabilities (MDhex) in GE Healthcare devices—five rated CVSS 10 and one 8.5—that stem from use of a deprecated open-source component (webmin) and problematic open port configurations; the flaws could allow software-level changes that render devices unusable, interfere with clinical operation, or expose patient health information.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
