CVE-2014-5401

Severity CVSS v4.0:
Pending analysis
Type:
CWE-94 Code Injection
Publication date:
26/03/2019
Last modified:
03/11/2025

Description

Hospira MedNet software version 5.8 and prior uses vulnerable versions of the JBoss Enterprise Application Platform software that may allow unauthenticated users to execute arbitrary code on the target system. Hospira has developed a new version of the MedNet software, MedNet 6.1. Existing versions of MedNet can be upgraded to MedNet 6.1.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hospira:mednet:*:*:*:*:*:*:*:* 5.8 (including)