OMICARD EDM has a hard-coded machine key. An unauthenticated remote attacker can use the machine key to send serialized payload to the server to execute arbitrary code, manipulate system data and disrupt service.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-36031 | OMICARD EDM has a hard-coded machine key. An unauthenticated remote attacker can use the machine key to send serialized payload to the server to execute arbitrary code, manipulate system data and disrupt service. |
Fixes
Solution
Contact tech support from ITPison.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2024-09-16T20:57:26.072Z
Reserved: 2022-06-10T00:00:00
Link: CVE-2022-32965
No data.
Status : Modified
Published: 2022-08-04T10:15:08.250
Modified: 2024-11-21T07:07:19.633
Link: CVE-2022-32965
No data.
OpenCVE Enrichment
No data.
EUVD