Unrated severityNVD Advisory· Published Jun 10, 2024· Updated Oct 3, 2025
Hardcoded password in drEryk Gabinet
CVE-2024-3699
Description
Use of hard-coded password to the patients' database allows an attacker to retrieve sensitive data stored in the database. The password is the same among all drEryk Gabinet installations.This issue affects drEryk Gabinet software versions from 7.0.0.0 through 9.17.0.0.
Affected products
2- Range: >=7.0.0.0, <=9.17.0.0
- drEryk sp. z o.o./drEryk Gabinetv5Range: 7.0.0.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- cert.pl/en/posts/2024/06/CVE-2024-1228/mitrethird-party-advisory
- cert.pl/posts/2024/06/CVE-2024-1228/mitrethird-party-advisory
- dreryk.pl/produkty/gabinet/mitreproduct
News mentions
0No linked articles in our index yet.