CVE-2014-0348
Severity CVSS v4.0:
Pending analysis
Type:
CWE-287
Authentication Issues
Publication date:
15/04/2014
Last modified:
12/04/2025
Description
The Artiva Agency Single Sign-On (SSO) implementation in Artiva Workstation 1.3.x before 1.3.9, Artiva Rm 3.1 MR7, Artiva Healthcare 5.2 MR5, and Artiva Architect 3.2 MR5, when the domain-name option is enabled, allows remote attackers to login to arbitrary domain accounts by using the corresponding username on a Windows client machine.
Impact
Base Score 2.0
3.50
Severity 2.0
LOW
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:ontariosystems:artiva_architect:3.2:mr5:*:*:*:*:*:* | ||
| cpe:2.3:a:ontariosystems:artiva_healthcare:5.2:mr5:*:*:*:*:*:* | ||
| cpe:2.3:a:ontariosystems:artiva_rm:3.1:mr7:*:*:*:*:*:* | ||
| cpe:2.3:a:ontariosystems:artiva_workstation:1.3.0:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



