Open Dental 16.3

CPE Details

Open Dental 16.3
16.3
2019-07-01
14h59 +00:00
2019-07-01
14h59 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:opendental:opendental:16.3:*:*:*:*:*:*:*

Informations

Vendor

opendental

Product

opendental

Version

16.3

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2018-15717 2018-12-12 19h00 +00:00 Open Dental before version 18.4 stores user passwords as base64 encoded MD5 hashes.
5.3
Moyen
CVE-2018-15718 2018-12-12 19h00 +00:00 Open Dental before version 18.4 transmits the entire user database over the network when a remote unauthenticated user accesses the command prompt. This allows the attacker to gain access to usernames, password hashes, privilege levels, and more.
7.5
Haute
CVE-2018-15719 2018-12-12 19h00 +00:00 Open Dental before version 18.4 installs a mysql database and uses the default credentials of "root" with a blank password. This allows anyone on the network with access to the server to access all database information.
9.8
Critique