Vulnerabilities > Fresenius Kabi > Agilia Connect > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-01-21 CVE-2021-23207 Insufficiently Protected Credentials vulnerability in Fresenius-Kabi products
An attacker with physical access to the host can extract the secrets from the registry and create valid JWT tokens for the Fresenius Kabi Vigilant MasterMed version 2.0.1.3 application and impersonate arbitrary users.
local
low complexity
fresenius-kabi CWE-522
5.5