CVE-2017-6022: Bd Kla Journal Service

Critical severity, CVSS 9.8. EPSS: 1.8% chance of exploitation in the next 30 days.

A hard-coded password issue was discovered in Becton, Dickinson and Company (BD) PerformA, Version 2.0.14.0 and prior versions, and KLA Journal Service, Version 1.0.51 and prior versions. They use hard-coded passwords to access the BD Kiestra Database, which could be leveraged to compromise the confidentiality of limited PHI/PII information stored in the BD Kiestra Database.

Affected products

  • Bd Kla Journal Service: up to and including 1.0.51
  • Bd Performa: up to and including 2.0.14.0

Published 2017-06-30. Last modified 2026-06-17.