CVE-2016-4328: Medhost Perioperative Information Management System

Critical severity, CVSS 9.8. EPSS: 4% chance of exploitation in the next 30 days.

MEDHOST Perioperative Information Management System (aka PIMS or VPIMS) before 2015R1 has hardcoded credentials, which makes it easier for remote attackers to obtain sensitive information via direct requests to the application database server.

Affected products

  • Medhost Perioperative Information Management System: affected versions not specified

Published 2016-06-10. Last modified 2026-06-17.