Overview
Open Dental is medical dental records management software. Open Dental version 16.1, and previous versions, installs with a blank root database (MySQL) password by default.. An attacker with network access to an Open Dental MySQL database could read, modify, or delete data.
This Vulnerability Note initially, and incorrectly, stated that Open Dental used hard coded credentials. The Impact section also implied that in its default configuration, the Open Dental database was available over remote networks such as the internet. An Open Dental database would need to be specifically configured to allow remote network access.
Description
Open Dental provided the following statements. |
Impact
An attacker with network access to an Open Dental MySQL database could read, modify, or delete data. The attacker would most likely need local network access. |
Solution
Update MySQL database credentials and enable further protections |
Restrict network access |
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | 8.3 | AV:A/AC:L/Au:N/C:C/I:C/A:C |
Temporal | 7.5 | E:F/RL:W/RC:C |
Environmental | 1.9 | CDP:ND/TD:L/CR:ND/IR:ND/AR:ND |
References
- http://www.opendental.com/manual/computernetworksetup.html
- http://www.opendental.com/manual/securitymysql.html
- http://www.opendental.com/manual/encryption.html
- http://www.opendental.com/manual/middletier.html
- http://www.opendental.com/manual/securityoverview.html
- http://www.opendental.com/manual/mysql.html
- http://www.opendental.com/
- https://cwe.mitre.org/data/definitions/258.html
Acknowledgements
Thanks to Justin Shafer for reporting this vulnerability.
This document was written by Garret Wassermann.
Other Information
CVE IDs: | CVE-2016-6531 |
Date Public: | 2016-09-06 |
Date First Published: | 2016-09-06 |
Date Last Updated: | 2016-09-13 08:27 UTC |
Document Revision: | 55 |