Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Philips DoseWise Portal web-based application versions 1.1.7.333 and 2.1.1.3069 stores login credentials in clear text within backend system files. CVSS v3 base score: 6.5, CVSS vector string: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N.
CVSS Information
N/A
Vulnerability Type
敏感数据的明文存储
Vulnerability Title
Philips DoseWise Portal 信任管理漏洞
Vulnerability Description
Philips DoseWise Portal是荷兰飞利浦(Philips)公司的一套辐射量管理平台。该平台用于记录、跟踪和分析对患者和医生的辐射。 Philips DoseWise Portal 1.1.7.333版本和2.1.1.3069版本中存在信任管理漏洞,该漏洞源于程序将登录证书以明文的形式储存在后端系统文件中。远程攻击者可利用该漏洞获取DWP应用程序数据库的访问权限。
CVSS Information
N/A
Vulnerability Type
N/A