VYPR

Voluson S8

by Ge

CVEs (4)

  • CVE-2020-36549HigJun 17, 2022
    risk 0.57cvss 8.8epss 0.00

    A vulnerability classified as critical was found in GE Voluson S8. Affected is the underlying Windows XP operating system. Missing patches might introduce an excessive attack surface. Access to the local network is required for this attack to succeed.

  • CVE-2020-6977MedFeb 20, 2020
    risk 0.44cvss 6.8epss 0.00

    A restricted desktop environment escape vulnerability exists in the Kiosk Mode functionality of affected devices. Specially crafted inputs can allow the user to escape the restricted environment, resulting in access to the underlying operating system. Affected devices include…

  • CVE-2020-36548MedJun 17, 2022
    risk 0.38cvss 5.9epss 0.00

    A vulnerability classified as problematic has been found in GE Voluson S8. Affected is the file /uscgi-bin/users.cgi of the Service Browser. The manipulation leads to improper authentication and elevated access possibilities. It is possible to launch the attack on the local host.

  • CVE-2020-36547MedJun 17, 2022
    risk 0.38cvss 5.9epss 0.00

    A vulnerability was found in GE Voluson S8. It has been rated as critical. This issue affects the Service Browser which itroduces hard-coded credentials. Attacking locally is a requirement. It is recommended to change the configuration settings.