VDB
ICSMA-20-184-01
ICSMA-20-184-01
PUBLISHED
CVSS 9.399999618530273 CRITICAL
Successful exploitation of these vulnerabilities could allow an attacker to bypass authentication, discover restricted information, view/manipulate restricted database information, and/or execute malicious code.
Risk Scores
CVSS v3.1
9.399999618530273
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| OpenClinic GA: Version 5.09.02 | ||
| OpenClinic GA: Version 5.89.05b |
Timeline
- Jul 2, 2020 CVE Published
- Jun 15, 2021 CVE Updated
References
- https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/OT/white/2020/icsma-20-184-01.json advisory
- https://www.cisa.gov/news-events/ics-medical-advisories/icsma-20-184-01 advisory
- https://us-cert.cisa.gov/ncas/tips/ST04-014 url
- https://us-cert.cisa.gov/sites/default/files/recommended_practices/NCCIC_ICS-CERT_Defense_in_Depth_2016_S508C.pdf url
- https://us-cert.cisa.gov/ics/tips/ICS-TIP-12-146-01B url
- https://sourceforge.net/projects/open-clinic/files/ fix