CVE-2014-5405
Severity CVSS v4.0:
Pending analysis
Type:
CWE-259
Use of Hard-coded Password
Publication date:
03/04/2015
Last modified:
03/11/2025
Description
Hospira MedNet before 6.1 uses a hardcoded cleartext password to control SQL database authorization, which allows remote authenticated users to bypass intended access restrictions by leveraging knowledge of this password.
Impact
Base Score 2.0
9.00
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:hospira:mednet:*:*:*:*:*:*:*:* | 5.8 (including) |
To consult the complete list of CPE names with products and versions, see this page



