WebEOC before 6.0.2 stores sensitive information in locations such as URIs, web pages, and configuration files, which allows remote attackers to obtain information such as Usernames, Passwords, Emergency information, medical information, and system configuration.
References
Link | Resource |
---|---|
http://www.kb.cert.org/vuls/id/JGEI-6BWPXL | |
http://www.kb.cert.org/vuls/id/165290 | Patch US Government Resource |
Configurations
Information
Published : 2005-07-17 21:00
Updated : 2008-09-05 13:51
NVD link : CVE-2005-2285
Mitre link : CVE-2005-2285
JSON object : View
CWE
Products Affected
esi_products
- webeoc