PT-2016-5889 · Medhost · Medhost Perioperative Information Management System

Daniel Dunstedter

·

Published

2016-06-10

·

Updated

2016-06-10

·

CVE-2016-4328

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions MEDHOST Perioperative Information Management System versions prior to 2015R1
Description The issue allows remote attackers to obtain sensitive information via direct requests to the application database server due to hardcoded credentials.
Recommendations For versions prior to 2015R1, update to version 2015R1 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2016-4328

Affected Products

Medhost Perioperative Information Management System