First published: Wed Jul 29 2020(Updated: )
OpenClinic GA 5.09.02 and 5.89.05b stores passwords using inadequate hashing complexity, which may allow an attacker to recover passwords using known password cracking techniques.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Openclinic Ga Project Openclinic Ga | =5.09.02 | |
Openclinic Ga Project Openclinic Ga | =5.89.05b |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-14489.
The severity of CVE-2020-14489 is high with a CVSS score of 7.5.
The affected software of CVE-2020-14489 includes OpenClinic GA versions 5.09.02 and 5.89.05b.
CVE-2020-14489 is a vulnerability in OpenClinic GA where passwords are stored using inadequate hashing complexity, which may allow an attacker to recover passwords using known password cracking techniques.
Yes, it is recommended to update to a patched version of OpenClinic GA to mitigate the vulnerability.