OMICARD EDM has a hard-coded machine key. An unauthenticated remote attacker can use the machine key to send serialized payload to the server to execute arbitrary code, manipulate system data and disrupt service.
Metrics
Affected Vendors & Products
Fixes
Solution
Contact tech support from ITPison.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2024-09-16T20:57:26.072Z
Reserved: 2022-06-10T00:00:00
Link: CVE-2022-32965

No data.

Status : Modified
Published: 2022-08-04T10:15:08.250
Modified: 2024-11-21T07:07:19.633
Link: CVE-2022-32965

No data.

No data.