Vulnerability Description
OpenClinic GA 5.09.02 and 5.89.05b stores passwords using inadequate hashing complexity, which may allow an attacker to recover passwords using known password cracking techniques.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Openclinic Ga Project | Openclinic Ga | 5.09.02 |
Related Weaknesses (CWE)
References
- https://us-cert.cisa.gov/ics/advisories/ICSMA-20-184-01Third Party AdvisoryUS Government Resource
- https://us-cert.cisa.gov/ics/advisories/ICSMA-20-184-01Third Party AdvisoryUS Government Resource
FAQ
What is CVE-2020-14489?
CVE-2020-14489 is a vulnerability with a CVSS score of 6.2 (MEDIUM). OpenClinic GA 5.09.02 and 5.89.05b stores passwords using inadequate hashing complexity, which may allow an attacker to recover passwords using known password cracking techniques.
How severe is CVE-2020-14489?
CVE-2020-14489 has been rated MEDIUM with a CVSS base score of 6.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-14489?
Check the references section above for vendor advisories and patch information. Affected products include: Openclinic Ga Project Openclinic Ga.