WebEOC before 6.0.2 uses the same secret key for all installations, which allows attackers with the key to decrypt data from any WebEOC installation.
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| Webeoc | Esi_products | * | 6.0.1 (including) |
References