9.8
CVSSv3

CVE-2023-47800

Published: 10/11/2023 Updated: 23/11/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Natus NeuroWorks and SleepWorks prior to 8.4 GMA3 utilize a default password of xltek for the Microsoft SQL Server service sa account, allowing a threat actor to perform remote code execution, data exfiltration, or other nefarious actions such as tampering with data or destroying/disrupting MSSQL services.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

natus neuroworks eeg

natus neuroworks eeg 8.4

natus sleepworks

natus sleepworks 8.4