Page 2 of 11 results (0.002 seconds)

CVSS: 3.5EPSS: 0%CPEs: 3EXPL: 0

11 Sep 2020 — In Patient Information Center iX (PICiX) Versions B.02, C.02, C.03, the software does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is then used as a webpage and served to other users. Successful exploitation could lead to unauthorized access to patient data via a read-only web application. Patient Information Center iX (PICiX) Versiones B.02, C.02, C.03, PerformanceBridge Focal Point Versión A.01, Monitores de paciente IntelliVue MX100, MX400-MX850 y M... • https://us-cert.cisa.gov/ics/advisories/icsma-20-254-01 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •