WebEOC before 6.0.2 uses the same secret key for all installations, which allows attackers with the key to decrypt data from any WebEOC installation.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
http://www.kb.cert.org/vuls/id/388282 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2005-12-05T00:00:00Z
Updated: 2024-09-16T18:56:23.875Z
Reserved: 2005-12-04T00:00:00Z
Link: CVE-2005-4002
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2005-12-05T00:03:00.000
Modified: 2008-09-05T20:55:52.677
Link: CVE-2005-4002
Redhat
No data.