Tomedo develops a server product focused on healthcare or clinical data management, with observed vulnerabilities centered on credential and data-protection deficiencies. The recurring weakness classes—cleartext transmission of sensitive information and insufficiently protected credentials—reflect common risks in medical software where authentication and confidentiality controls must be carefully implemented. Current severity, exploitation, and exposure figures are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Tomedo over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-17393CRITICAL The Customer's Tomedo Server in Version 1.7.3 communicates to the Vendor Tomedo Server via HTTP (in cleartext) that can be sniffed by unauthorized actors. Basic authentication is u | Oct 18, 2019 | 9.8 | 24 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Tomedo.
Media articles that mention a CVE ID that affects a product developed by Tomedo — matched by CVE ID, not by vendor name.