VYPR

Efilm Workstation

by IBM Merge Healthcare

CVEs (4)

  • CVE-2024-23622CriJan 26, 2024
    risk 0.65cvss 10.0epss 0.02

    A stack-based buffer overflow exists in IBM Merge Healthcare eFilm Workstation license server. A remote, unauthenticated attacker can exploit this vulnerability to achieve remote code execution with SYSTEM privileges.

  • CVE-2024-23621CriJan 26, 2024
    risk 0.65cvss 10.0epss 0.02

    A buffer overflow exists in IBM Merge Healthcare eFilm Workstation license server. A remote, unauthenticated attacker can exploit this vulnerability to achieve remote code execution.

  • CVE-2024-23619CriJan 26, 2024
    risk 0.64cvss 9.8epss 0.02

    A hardcoded credential vulnerability exists in IBM Merge Healthcare eFilm Workstation. A remote, unauthenticated attacker can exploit this vulnerability to achieve information disclosure or remote code execution.

  • CVE-2024-23620HigJan 26, 2024
    risk 0.57cvss 8.8epss 0.00

    An improper privilege management vulnerability exists in IBM Merge Healthcare eFilm Workstation. A local, authenticated attacker can exploit this vulnerability to escalate privileges to SYSTEM.