PT-2024-27238 · Unknown · Simple Care
Published
2024-06-10
·
Updated
2025-10-03
·
CVE-2024-3700
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Simple Care software (all versions)
Description
The issue is related to the use of a hard-coded password for the patients' database, allowing an attacker to retrieve sensitive data. This password is uniform across all installations of the Simple Care software.
Recommendations
For all versions, since the software is no longer supported, there is no information about a newer version that contains a fix for this issue.
Fix
Using Hardcoded Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Simple Care