Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2022-2734PUBLISHED: 2022-08-09Improper Restriction of Rendered UI Layers or Frames in GitHub repository openemr/openemr prior to 7.0.0.1.
CVE-2022-2729PUBLISHED: 2022-08-09Cross-site Scripting (XSS) - DOM in GitHub repository openemr/openemr prior to 7.0.0.1.
CVE-2022-2730PUBLISHED: 2022-08-09Authorization Bypass Through User-Controlled Key in GitHub repository openemr/openemr prior to 7.0.0.1.
CVE-2022-2731PUBLISHED: 2022-08-09Cross-site Scripting (XSS) - Reflected in GitHub repository openemr/openemr prior to 7.0.0.1.
CVE-2022-2732PUBLISHED: 2022-08-09Improper Privilege Management in GitHub repository openemr/openemr prior to 7.0.0.1.
User Rank: Ninja
12/17/2012 | 8:04:24 PM
This
sounds like one nasty little malware. There is a lot of sensitive
data that is kept on POS systems. Companies keep all sorts of
customer information in their databases. Take for example a car
dealerships point of view contains license, plate, dmv info, credit
info., and purchase history. That just saved an awful lot of time
that would have had to been gotten through social engineering and
research. 40 countries are feeling the effects I can't imagine that
this will be as much of a that in the near future.
Paul
Sprague
InformationWeek
Contributor