Описание
Use of hard-coded password to the patients' database allows an attacker to retrieve sensitive data stored in the database. The password is the same among all Eurosoft Przychodnia installations.
This issue affects Eurosoft Przychodnia software before version 20240417.001 (from that version vulnerability is fixed).
Ссылки
- Third Party Advisory
- Third Party Advisory
- Product
- Third Party Advisory
- Third Party Advisory
- Product
Уязвимые конфигурации
Конфигурация 1Версия до 20240417.001 (исключая)
cpe:2.3:a:eurosoft:przychodnia:*:*:*:*:*:*:*:*
EPSS
Процентиль: 33%
0.00126
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-259
CWE-798
Связанные уязвимости
CVSS3: 9.8
github
больше 1 года назад
Use of hard-coded password to the patients' database allows an attacker to retrieve sensitive data stored in the database. The password is the same among all Eurosoft Przychodnia installations. This issue affects Eurosoft Przychodnia software before version 20240417.001 (from that version vulnerability is fixed).
EPSS
Процентиль: 33%
0.00126
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-259
CWE-798