Vulnerability Description
The FACSChorus software database can be accessed directly with the privileges of the currently logged-in user. A threat actor with physical access could potentially gain credentials, which could be used to alter or destroy data stored in the database.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bd | Facschorus | 5.0 |
| Hp | Hp Z2 Tower G9 | - |
| Hp | Hp Z2 Tower G5 | - |
Related Weaknesses (CWE)
References
- https://www.bd.com/en-us/about-bd/cybersecurity/bulletin/bd-facschorus-softwareVendor Advisory
- https://www.bd.com/en-us/about-bd/cybersecurity/bulletin/bd-facschorus-softwareVendor Advisory
FAQ
What is CVE-2023-29065?
CVE-2023-29065 is a vulnerability with a CVSS score of 4.1 (MEDIUM). The FACSChorus software database can be accessed directly with the privileges of the currently logged-in user. A threat actor with physical access could potentially gain credentials, which could be us...
How severe is CVE-2023-29065?
CVE-2023-29065 has been rated MEDIUM with a CVSS base score of 4.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-29065?
Check the references section above for vendor advisories and patch information. Affected products include: Bd Facschorus, Hp Hp Z2 Tower G9, Hp Hp Z2 Tower G5.