CVE-2024-1228: Hardcoded password in Eurosoft Przychodnia
Use of hard-coded password to the patients' database allows an attacker to retrieve sensitive data stored in the database. The password is the same among all Eurosoft Przychodnia installations.
This issue affects Eurosoft Przychodnia software before version 20240417.001 (from that version vulnerability is fixed).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-1228?
CVE-2024-1228 is considered a critical vulnerability due to the use of a hard-coded password that compromises patient data security.
How do I fix CVE-2024-1228?
To fix CVE-2024-1228, upgrade your Eurosoft Przychodnia software to version 20240417.001 or later.
What kind of data is exposed due to CVE-2024-1228?
CVE-2024-1228 allows attackers to retrieve sensitive patient data stored in the database.
Which software versions are affected by CVE-2024-1228?
CVE-2024-1228 affects all versions of Eurosoft Przychodnia prior to version 20240417.001.
Is there a known workaround for CVE-2024-1228?
Currently, the only effective mitigation for CVE-2024-1228 is to update to the latest software version.