CVE-2022-38765
09.12.2022, 00:15
Canon Medical Informatics Vitrea Vision 7.7.76.1 does not adequately enforce access controls. An authenticated user is able to gain unauthorized access to imaging records by tampering with the vitrea-view/studies/search patientId parameter.Enginsight
Vendor | Product | Version |
---|---|---|
canon | vitrea_view | 𝑥 < 7.8 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration