Vulnerability Description
MEDHOST Perioperative Information Management System (aka PIMS or VPIMS) before 2015R1 has hardcoded credentials, which makes it easier for remote attackers to obtain sensitive information via direct requests to the application database server.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Medhost | Perioperative Information Management System | - |
References
- http://www.kb.cert.org/vuls/id/482135Third Party AdvisoryUS Government Resource
- http://www.kb.cert.org/vuls/id/482135Third Party AdvisoryUS Government Resource
FAQ
What is CVE-2016-4328?
CVE-2016-4328 is a vulnerability with a CVSS score of 9.8 (CRITICAL). MEDHOST Perioperative Information Management System (aka PIMS or VPIMS) before 2015R1 has hardcoded credentials, which makes it easier for remote attackers to obtain sensitive information via direct r...
How severe is CVE-2016-4328?
CVE-2016-4328 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2016-4328?
Check the references section above for vendor advisories and patch information. Affected products include: Medhost Perioperative Information Management System.