Henry Schein Dentrix G5 before 15.1.294 has a single internal-database password that is shared across different customers' installations, which allows remote attackers to obtain sensitive information about patients by leveraging knowledge of this password from another installation.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: certcc

Published: 2022-10-03T16:15:33

Updated: 2022-10-03T16:15:33

Reserved: 2022-10-03T00:00:00


Link: CVE-2012-4952

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2013-05-01T12:00:07.190

Modified: 2013-05-21T04:00:00.000


Link: CVE-2012-4952

JSON object: View

cve-icon Redhat Information

No data.

CWE