Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 12 min 116 bronnen 1 kritiek 4 vandaag
CVE's Videos

← Terug naar CVE-database

CVE-2014-3862

MEDIUM · 4.3 CVSS Gepubliceerd: CWE-200

Beschrijving

CDA.xsl in HL7 C-CDA 1.1 and earlier allows remote attackers to discover potentially sensitive URLs via a crafted reference element that triggers creation of an IMG element with an arbitrary URL in its SRC attribute, leading to information disclosure in a Referer log.

Vendors

Hl7

Affected products

C-cda

References