CVE-2023-29064: Hardcoded Secrets
Published Nov 28, 2023
·Updated
The FACSChorus software contains sensitive information stored in plaintext. A threat actor could gain hardcoded secrets used by the application, which include tokens and passwords for administrative accounts.
Affected Software
6 affected components
All of the following
Any of the following
BD Facschorus=5.0
BD Facschorus=5.1
HP Hp Z2 Tower G9
All of the following
Any of the following
BD Facschorus=3.0
BD Facschorus=3.1
HP Hp Z2 Tower G5
Event History
Nov 28, 2023
CVE Published
08:35 PM
Data Sourced
08:35 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-29064?
CVE-2023-29064 is a vulnerability in the FACSChorus software where sensitive information is stored in plaintext, allowing a threat actor to gain access to hardcoded secrets, such as tokens and passwords for administrative accounts.
2
How does CVE-2023-29064 affect the Bd Facschorus software?
CVE-2023-29064 affects Bd Facschorus software versions 5.0 and 5.1.
3
Is Hp Z2 Tower G9 affected by CVE-2023-29064?
No, Hp Hp Z2 Tower G9 is not affected by CVE-2023-29064.
4
How severe is CVE-2023-29064?
CVE-2023-29064 has a severity rating of 4.1 (Medium).
5
How can I fix the CVE-2023-29064 vulnerability?
To fix the CVE-2023-29064 vulnerability, update to a patched version of the Bd Facschorus software.