Patterson Dental Eaglesoft 21 has AES-256 encryption but there are two ways to obtain a keyfile: (1) keybackup.data > License > Encryption Key or (2) Eaglesoft.Server.Configuration.data > DbEncryptKeyPrimary > Encryption Key. Applicable files are encrypted with keys and salt that are hardcoded into a DLL or EXE file.
The product contains hard-coded credentials, such as a password or cryptographic key.
Link | Tags |
---|---|
https://justinshafer.blogspot.com/2022/08/eaglesofts-automatic-aes-256-encryption.html | third party advisory |