CVE-2020-14487
—CVSS 3.1
9.8 critical
EPSS
2%p81
Published
()
Modified
Description
OpenClinic GA 5.09.02 contains a hidden default user account that may be accessed if an administrator has not expressly turned off this account, which may allow an attacker to login and execute arbitrary commands.
- Vendors
- freemedsoftware
- Products
- openclinic ga
- Weakness
- CWE-912
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.