CVE-2024-53522
Severity CVSS v4.0:
Pending analysis
Type:
CWE-331
Insufficient Entropy
Publication date:
07/01/2025
Last modified:
15/04/2026
Description
Bangkok Medical Software HOSxP XE v4.64.11.3 was discovered to contain a hardcoded IDEA Key-IV pair in the HOSxPXE4.exe and HOS-WIN32.INI components. This allows attackers to access sensitive information.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH



