CVE-2015-4594

Publication date

2017-01-10 15:00:00

Family

mitre

State

PUBLISHED

Description

eClinicalWorks Population Health (CCMR) suffers from a session fixation vulnerability. When authenticating a user, the application does not assign a new session ID, making it possible to use an existent session ID.