PT-2023-14719 · Fresenius Kabi · Fresenius Kabi Pharmahelp

Published

2023-08-22

·

Updated

2024-01-10

·

CVE-2022-45611

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Fresenius Kabi PharmaHelp version 5.1.759.0
Description An issue was discovered that allows attackers to gain escalated privileges via capture of user login information.
Recommendations For Fresenius Kabi PharmaHelp version 5.1.759.0, consider restricting access to sensitive features until a patch is available to prevent attackers from capturing user login information and gaining escalated privileges. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Insufficiently Protected Credentials

Weakness Enumeration

Related Identifiers

CVE-2022-45611

Affected Products

Fresenius Kabi Pharmahelp