4.6
CVSSv2

CVE-2001-1546

Published: 31/12/2001 Updated: 14/02/2024
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 465
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Pathways Homecare 6.5 uses weak encryption for user names and passwords, which allows local users to gain privileges by recovering the passwords from the pwhc.ini file.

Vulnerable Product Search on Vulmon Subscribe to Product

mckesson pathways homecare 6.5

Exploits

source: wwwsecurityfocuscom/bid/3653/info McKesson Pathways Homecare is a client/server application which is used to track patient information, billing information and medical records for home care patients The administrative username and password are encrypted in the pwhcini file on the client system The encryption method used to sto ...