Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The M2M Broker in OSEHRA VistA, as distributed before September 30, 2013, allows attackers to bypass authentication and authorization to perform doctor-only actions and read or modify patient records via unspecified vectors related to a "logic flaw."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
OSEHRA VistA M2M Broker 安全漏洞
Vulnerability Description
OSEHRA VistA是美国OSEHRA社区的一套开源的电子健康记录(EHR)系统。该系统包括联系方式、病历报告、身体状况和疾病信息等模块。 OSEHRA VistA中的M2M Broker模块中存在逻辑错误漏洞。远程攻击者可利用该漏洞绕过身份验证和授权,以医生的权限执行操作,如读取或修改病人记录。
CVSS Information
N/A
Vulnerability Type
N/A