Back to overview

CVE-2014-5401

10.0
CVSS 2.0
Description
Hospira MedNet software version 5.8 and prior uses vulnerable versions of the JBoss Enterprise Application Platform software that may allow unauthenticated users to execute arbitrary code on the target system. Hospira has developed a new version of the MedNet software, MedNet 6.1. Existing versions of MedNet can be upgraded to MedNet 6.1.

Metadata

CVE ID
CVE-2014-5401
State
PUBLISHED
Assigner
icscert
Reserved
2014-08-22 00:00 UTC
Published
2019-03-26 16:21 UTC
Last updated
2025-11-03 18:20 UTC
Primary CWE
CWE-94
CWE-94
Vendor / Product
Hospira / MedNet
Sources
cve.org  ·  NVD

Severity & Metrics

10.0 N/D CVSS 2.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
Affected products (1)
VendorProductPlatformVersions
Hospira MedNet 0 ≤ 5.8, 6.1
Weakness (CWE)
CWESourceDescription
CWE-94 cna CWE-94
CVSS scores (1)
ScoreSeverityVersionSourceVector
10.0 N/D 2.0 cna AV:N/AC:L/Au:N/C:C/I:C/A:C
Back to overview