Dreryk

Gabinet

2 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.26%
  • Veröffentlicht 10.09.2026 12:02:12
  • Zuletzt bearbeitet 10.09.2026 19:58:20

DrEryk Gabinet before 11.5.0 uses hard-coded API credentials in its ticket reporting component. These credentials can be used to authenticate directly to the ticket system API. This allows an attacker to perform privileged operations beyond what is o...

  • EPSS 0.41%
  • Veröffentlicht 10.06.2024 12:15:10
  • Zuletzt bearbeitet 03.10.2025 09:15:34

Use of hard-coded password to the patients' database allows an attacker to retrieve sensitive data stored in the database. The password is the same among all drEryk Gabinet installations.This issue affects drEryk Gabinet software versions from 7.0.0....