CVE-2014-5405: Hospira Mednet

High severity, CVSS 9.0. EPSS: 2.3% chance of exploitation in the next 30 days.

Hospira MedNet before 6.1 uses a hardcoded cleartext password to control SQL database authorization, which allows remote authenticated users to bypass intended access restrictions by leveraging knowledge of this password.

Affected products

  • Hospira Mednet: up to and including 5.8

Published 2015-04-03. Last modified 2026-06-17.