Vulnerabilities > Pattersondental

DATE CVE VULNERABILITY TITLE RISK
2022-11-07 CVE-2022-37710 Use of Hard-coded Credentials vulnerability in Pattersondental Eaglesoft 21.0
Patterson Dental Eaglesoft 21 has AES-256 encryption but there are two ways to obtain a keyfile: (1) keybackup.data > License > Encryption Key or (2) Eaglesoft.Server.Configuration.data > DbEncryptKeyPrimary > Encryption Key.
local
low complexity
pattersondental CWE-798
7.8
2021-07-30 CVE-2021-35193 Improper Certificate Validation vulnerability in Pattersondental Eaglesoft
Patterson Application Service in Patterson Eaglesoft 18 through 21 accepts the same certificate authentication across different customers' installations (that have the same software version).
network
low complexity
pattersondental CWE-295
5.0