Home[1] Files[2] News[3] &[SERVICES_TAB] Contact[4] Add New[5]
- HASOMED Elefant / Elefant Software Updater Data Exposure / Privilege Escalation[6]
- Authored by Daniel Hirschberger[7], Florian Stuhlmann[8] | Site sec-consult.com[9]
-
HASOMED Elefant versions prior to 24.04.00 and Elefant Software Updater versions prior to 1.4.2.1811 suffer from having an unprotected exposed firebird database, unprotected FHIR API, multiple local privilege escalation, and hardcoded service password vulnerabilities.
- advisories | CVE-2024-50588[10], CVE-2024-50589[11], CVE-2024-50590[12], CVE-2024-50591[13], CVE-2024-50592[14], CVE-2024-50593[15]
- SHA-256 |
08569aaf8d9ee2326579f45288b32f5dc1f2f9623687358b993634b1d5424d28 - Download[16] | Favorite[17] | View[18]
File Tags
- ActiveX[24] (933)
- Advisory[25] (87,479)
- Arbitrary[26] (17,191)
- BBS[27] (2,859)
- Bypass[28] (1,936)
- CGI[29] (1,049)
- Code Execution[30] (7,978)
- Conference[31] (693)
- Cracker[32] (845)
- CSRF[33] (3,440)
- DoS[34] (25,460)
- Encryption[35] (2,397)
- Exploit[36] (54,490)
- File Inclusion[37] (4,280)
- File Upload[38] (1,029)
- Firewall[39] (822)
- Info Disclosure[40] (2,939)
- Intrusion Detection[41] (923)
- Java[42] (3,166)
- JavaScript[43] (911)
- Kernel[44] (7,360)
- Local[45] (14,893)
- Magazine[46] (587)
- Overflow[47] (13,272)
- Perl[48] (1,435)
- PHP[49] (5,331)
- Proof of Concept[50] (2,421)
- Protocol[51] (3,760)
- Python[52] (1,675)
- Remote[53] (31,987)
- Root[54] (3,677)
- Rootkit[55] (531)
- Ruby[56] (645)
- Scanner[57] (1,662)
- Security Tool[58] (8,068)
- Shell[59] (3,326)
- Shellcode[60] (1,219)
- Sniffer[61] (905)
- Spoof[62] (2,317)
- SQL Injection[63] (16,752)
- TCP[64] (2,465)
- Trojan[65] (690)
- UDP[66] (921)
- Virus[67] (675)
- Vulnerability[68] (33,270)
- Web[69] (10,178)
- Whitepaper[70] (3,786)
- x86[71] (971)
- XSS[72] (18,349)
- Other[73]
File Archives
- November 2024[74]
- October 2024[75]
- September 2024[76]
- August 2024[77]
- July 2024[78]
- June 2024[79]
- May 2024[80]
- April 2024[81]
- March 2024[82]
- February 2024[83]
- January 2024[84]
- December 2023[85]
- Older[86]
Systems
- AIX[87] (430)
- Apple[88] (2,126)
- BSD[89] (378)
- CentOS[90] (61)
- Cisco[91] (1,954)
- Debian[92] (7,160)
- Fedora[93] (1,693)
- FreeBSD[94] (1,247)
- Gentoo[95] (4,604)
- HPUX[96] (881)
- iOS[97] (393)
- iPhone[98] (108)
- IRIX[99] (220)
- Juniper[100] (71)
- Linux[101] (51,842)
- Mac OS X[102] (696)
- Mandriva[103] (3,105)
- NetBSD[104] (256)
- OpenBSD[105] (490)
- RedHat[106] (17,249)
- Slackware[107] (941)
- Solaris[108] (1,615)
- SUSE[109] (1,444)
- Ubuntu[110] (9,975)
- UNIX[111] (9,474)
- UnixWare[112] (188)
- Windows[113] (6,784)
- Other[114]
- Services
- Security Services[125]
- Hosting By
- Rokasec[126]


