Henry Schein Dentrix G5 before 15.1.294 has a single internal-database password that is shared across different customers' installations, which allows remote attackers to obtain sensitive information about patients by leveraging knowledge of this password from another installation.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: certcc

Published: 2013-05-01T10:00:00Z

Updated: 2024-09-16T19:37:04.769Z

Reserved: 2012-09-17T00:00:00Z

Link: CVE-2012-4952

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2013-05-01T12:00:07.190

Modified: 2013-05-21T04:00:00.000

Link: CVE-2012-4952

cve-icon Redhat

No data.