CVE Database
/

CVE-2024-1629

Back to search

CVE-2024-1629

Published: May 14, 2024

Modified: Aug 1, 2024

PUBLISHED

CVSS v3.1

6.2

MEDIUM

Description

Path traversal vulnerability in “deleteFiles” function of Common Service Desktop, a GE HealthCare ultrasound device component

VendorProductVersions

GE HealthCare

Venue

affected
R1
affected
R2
affected
R3 - <= R3.3
affected
R4 - <= R4.3

GE HealthCare

Venue Go

affected
R2
affected
R3 - <= R3.3
affected
R4 - <= R4.3

GE HealthCare

Venue Fit

affected
R3 - <= R3.3
affected
R4 - <= R4.3

GE HealthCare

LOGIQ e

affected
R7 - <= R9.1.4
affected
R8 - <= R10.1.3
affected
R9 - <= R11.0.3

GE HealthCare

LOGIQ He

affected
0 - <= R9.3.1

GE HealthCare

Vivid E

affected
E95 - < 206
affected
E90 - < 206
affected
E80 - < 206

GE HealthCare

Vivid S

affected
70N - < 206
affected
60N - < 206

GE HealthCare

Vivid T

affected
T8 - < 206
affected
T9 - < 206

GE HealthCare

Vivid iq

affected
0 - < 206

GE HealthCare

Voluson Expert 16

affected
0
affected
BT24

GE HealthCare

Voluson Expert 18

affected
0
affected
BT24

GE HealthCare

Voluson Expert 22

affected
0
affected
BT24

GE HealthCare

Voluson SWIFT

affected
0
affected
BT24

GE HealthCare

LOGIQ E10

affected
0 - < R3.2.0

GE HealthCare

LOGIQ E10s

affected
0 - < R3.2.0

GE HealthCare

LOGIQ Fortis

affected
0 - < R3.2.0

Weaknesses (CWE)

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Attack Vector

Local

Attack Complexity

Low

Privileges Required

None

User Interaction

None

Scope

Unchanged

Confidentiality

High

Integrity

None

Availability

None

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now