GE alert
2960Warning Date
Severity Level
Warning Number
Target Sector
19 February, 2020
● Medium
2020-931
HealthCare
Description:
GE has released an alert to address a vulnerability in the following product:
- Vivid products
- all versions
- LOGIQ
- all versions, not including LOGIQ 100 Pro
- Voluson
- all versions
- Versana Essential
- all versions
- Invenia ABUS Scan station
- all versions
- Venue
- all versions, not including Venue 40 R1-3 and Venue 50 R4-5
Threats:
Allow the user to escape the restricted environment, resulting in access to the underlying operating system.
Best practice and Recommendations:
GE Healthcare recommends organizations to do the following:
- Restrict physical access to devices by unauthorized individuals.
- Enable the “system lock” password in the Administration GUI menu if possible.
For more information: