Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vx77-f96x-gpjp

Опубликовано: 08 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 5.9

Описание

Asseco InfoMedica is a comprehensive solution used to manage both administrative and medical tasks in the healthcare sector. Passwords of all users are stored in a database in an encoded format. An attacker in possession of these encoded passwords is able to decode them by using an algorithm embedded in the client-side part of the software.  This vulnerability has been fixed in versions 4.50.1 and 5.38.0

Asseco InfoMedica is a comprehensive solution used to manage both administrative and medical tasks in the healthcare sector. Passwords of all users are stored in a database in an encoded format. An attacker in possession of these encoded passwords is able to decode them by using an algorithm embedded in the client-side part of the software.  This vulnerability has been fixed in versions 4.50.1 and 5.38.0

EPSS

Процентиль: 4%
0.00018
Низкий

5.9 Medium

CVSS4

Дефекты

CWE-257

Связанные уязвимости

nvd
около 1 месяца назад

Asseco InfoMedica is a comprehensive solution used to manage both administrative and medical tasks in the healthcare sector. Passwords of all users are stored in a database in an encoded format. An attacker in possession of these encoded passwords is able to decode them by using an algorithm embedded in the client-side part of the software.  This vulnerability has been fixed in versions 4.50.1 and 5.38.0

EPSS

Процентиль: 4%
0.00018
Низкий

5.9 Medium

CVSS4

Дефекты

CWE-257