Vulnerabilities > Iris > Star Practice Management > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-01-29 CVE-2020-28406 Unspecified vulnerability in Iris Star Practice Management 2019.2.0.6
An improper authorization vulnerability exists in Star Practice Management Web version 2019.2.0.6, allowing an unauthorized user to access details about jobs he should not have access to via the Audit Trail Feature.
network
low complexity
iris
6.5
2021-01-29 CVE-2020-28404 Unspecified vulnerability in Iris Star Practice Management 2019.2.0.6
An improper authorization vulnerability exists in Star Practice Management Web version 2019.2.0.6, allowing an unauthorized user to access the Billing page without the appropriate privileges.
network
low complexity
iris
6.5
2021-01-29 CVE-2020-28401 Unspecified vulnerability in Iris Star Practice Management 2019.2.0.6
An improper authorization vulnerability exists in Star Practice Management Web version 2019.2.0.6, allowing an unauthorized user to access WIP details about jobs he should not have access to.
network
low complexity
iris
6.5