MV iDigital Clinic Enterprise (iDCE) 1.0 stores passwords in cleartext.
References
Link | Resource |
---|---|
https://github.com/ifmacedo/mconnect/blob/main/IDCE-ClearTextStorage | Exploit |
https://www.linkedin.com/pulse/armazenamento-inseguro-idce-mv-iran-macedo | Exploit Third Party Advisory |
https://mv.com.br/pt/blog/microdata-integra-novo-modulo-cockpit-ao-ris-idce | Press/Media Coverage |
Configurations
Configuration 1 (hide)
|
Information
Published : 2023-02-26 22:15
Updated : 2023-03-03 12:20
NVD link : CVE-2022-31405
Mitre link : CVE-2022-31405
JSON object : View
CWE
CWE-312
Cleartext Storage of Sensitive Information
Products Affected
mv_idigital_clinic_enterprise_project
- mv_idigital_clinic_enterprise