WebEOC before 6.0.2 uses the same secret key for all installations, which allows attackers with the key to decrypt data from any WebEOC installation.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Webeoc |
Esi_products |
* |
6.0.1 (including) |
References