Required CVE Record Information
Description
WebEOC before 6.0.2 stores sensitive information in locations such as URIs, web pages, and configuration files, which allows remote attackers to obtain information such as Usernames, Passwords, Emergency information, medical information, and system configuration.
References 2 Total
- kb.cert.org: VU#165290 third-party-advisory
- http://www.kb.cert.org/vuls/id/JGEI-6BWPXL
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 2 Total
- kb.cert.org: VU#165290 third-party-advisoryx_transferred
- http://www.kb.cert.org/vuls/id/JGEI-6BWPXL x_transferred