Show filters
13 Total Results
Displaying 11-13 of 13
Sort by:
Attacker Value
Unknown
CVE-2021-23196
Disclosure Date: January 21, 2022 (last updated February 23, 2025)
The web application on Agilia Link+ version 3.0 implements authentication and session management mechanisms exclusively on the client-side and does not protect authentication attributes sufficiently.
0
Attacker Value
Unknown
CVE-2021-23195
Disclosure Date: January 21, 2022 (last updated February 23, 2025)
Fresenius Kabi Vigilant Software Suite (Mastermed Dashboard) version 2.0.1.3 has the option for automated indexing (directory listing) activated. When accessing a directory, a web server delivers its entire content in HTML form. If an index file does not exist and directory listing is enabled, all content of the directory will be displayed, allowing an attacker to identify and access files on the server.
0
Attacker Value
Unknown
CVE-2021-33843
Disclosure Date: January 21, 2022 (last updated February 23, 2025)
Fresenius Kabi Agilia SP MC WiFi vD25 and prior has a default configuration page accessible without authentication. An attacker may use this functionality to change the exposed configuration values such as network settings.
0