WebEOC before 6.0.2 stores sensitive information in locations such as URIs, web pages, and configuration files, which allows remote attackers to obtain information such as Usernames, Passwords, Emergency information, medical information, and system configuration.
References
Link | Resource |
---|---|
http://www.kb.cert.org/vuls/id/165290 | Patch US Government Resource |
http://www.kb.cert.org/vuls/id/JGEI-6BWPXL |
Configurations
History
No history.
Information
Published : 2005-07-18 04:00
Updated : 2024-02-28 10:42
NVD link : CVE-2005-2285
Mitre link : CVE-2005-2285
CVE.ORG link : CVE-2005-2285
JSON object : View
Products Affected
esi_products
- webeoc
CWE