go to Content
:::

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

Le-yan Co., Ltd. dental management system - Hard-coded Credentials

TVN ID TVN-202201004
CVE ID CVE-2022-22056
CVSS 9.8 (Critical)
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Products Le-yan Co., Ltd. dental management system ver.2.8.5
Description The Leqin dental management system contains a hard-coded credentials vulnerability in the web page source code, which allows an unauthenticated remote attacker to acquire administrator’s privilege and control the system or disrupt service.
Solution Contact tech support from Le-yan Co., Ltd.
Credit Steven Yu (Steven Meow)
Public Date 2022-01-14
Top