First published: Thu Jan 25 2024(Updated: )
A hardcoded credential vulnerability exists in IBM Merge Healthcare eFilm Workstation. A remote, unauthenticated attacker can exploit this vulnerability to achieve information disclosure or remote code execution.
Credit: disclosures@exodusintel.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Merge Efilm Workstation | <=4.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-23619 is significant due to its potential for information disclosure and remote code execution.
To fix CVE-2024-23619, you should update IBM Merge Healthcare eFilm Workstation to a version beyond 4.2.
Users of IBM Merge Healthcare eFilm Workstation versions up to 4.2 are affected by CVE-2024-23619.
CVE-2024-23619 can facilitate information disclosure and remote code execution by remote, unauthenticated attackers.
No, CVE-2024-23619 can be exploited by remote attackers without authentication.