Описание
Use of hard-coded password to the patients' database allows an attacker to retrieve sensitive data stored in the database. The password is the same among all drEryk Gabinet installations.This issue affects drEryk Gabinet software versions from 7.0.0.0 through 9.17.0.0.
Ссылки
- Third Party Advisory
- Third Party Advisory
- Product
- Third Party Advisory
- Third Party Advisory
- Product
Уязвимые конфигурации
Конфигурация 1Версия от 7.0.0.0 (включая) до 9.17.0.0 (исключая)
cpe:2.3:a:dreryk:gabinet:*:*:*:*:*:*:*:*
EPSS
Процентиль: 33%
0.00126
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-259
CWE-798
Связанные уязвимости
CVSS3: 9.8
github
больше 1 года назад
Use of hard-coded password to the patients' database allows an attacker to retrieve sensitive data stored in the database. The password is the same among all drEryk Gabinet installations.This issue affects drEryk Gabinet software versions from 7.0.0.0 through 9.17.0.0.
EPSS
Процентиль: 33%
0.00126
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-259
CWE-798