CDCgov / cancer-report-validator

The Cancer Report Validator (CRV) is an interactive tool for validating the content of electronic submissions of cancer-related medical information prior to a system's communication with a public health central cancer registry.
Apache License 2.0
1 stars 3 forks source link

Critical and High Vulnerability Findings #13

Open JNHQ opened 4 years ago

JNHQ commented 4 years ago

I'm writing on behalf of a company that monitors software supply chain vulnerabilities in critical infrastructure for U.S. critical infrastructure. Our analysis has identified critical and high vulnerabilities in the CDC's Cancer Report Validator. Screen shot is attached. Please e-mail info@ionchannel.io for full analysis. This is not a sales pitch - all results will be provided as open data. CDC Cancer-Report-Validator Vulnerabilities.pdf