ZeroHour

CVE-2022-30277

CVSS 3.1
5.7 medium
EPSS
<1%p13
Published
()
Modified
Description

BD Synapsys™, versions 4.20, 4.20 SR1, and 4.30, contain an insufficient session expiration vulnerability. If exploited, threat actors may be able to access, modify or delete sensitive information, including electronic protected health information (ePHI), protected health information (PHI) and personally identifiable information (PII).

Vendors
bd
Products
synapsys
Weakness
CWE-613
Vector
CVSS:3.1/AV:P/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.