PT-2024-27238 · Unknown · Simple Care

Published

2024-06-10

·

Updated

2025-10-03

·

CVE-2024-3700

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Simple Care software (all versions)
Description The issue is related to the use of a hard-coded password for the patients' database, allowing an attacker to retrieve sensitive data. This password is uniform across all installations of the Simple Care software.
Recommendations For all versions, since the software is no longer supported, there is no information about a newer version that contains a fix for this issue.

Fix

Using Hardcoded Credentials

Weakness Enumeration

Related Identifiers

CVE-2024-3700

Affected Products

Simple Care