Vulnerabilities
Vulnerable Software
Open-Emr:  >> Openemr  >> 3.0.1  Security Vulnerabilities
An issue in open-emr before v.7.0.2 allows a remote attacker to escalate privileges via a crafted script to the formid parameter in the ereq_form.php component.
CVSS Score
3.5
EPSS Score
0.0
Published
2024-02-28
Improper Authorization in GitHub repository openemr/openemr prior to 7.0.1.
CVSS Score
6.3
EPSS Score
0.003
Published
2023-05-28
Cross-site Scripting (XSS) - Reflected in GitHub repository openemr/openemr prior to 7.0.1.
CVSS Score
8.3
EPSS Score
0.724
Published
2023-05-28
Cross-site Scripting (XSS) - Generic in GitHub repository openemr/openemr prior to 7.0.1.
CVSS Score
8.3
EPSS Score
0.855
Published
2023-05-28
Improper Access Control in GitHub repository openemr/openemr prior to 7.0.1.
CVSS Score
6.3
EPSS Score
0.001
Published
2023-05-27
Cross-site Scripting (XSS) - Stored in GitHub repository openemr/openemr prior to 7.0.1.
CVSS Score
4.7
EPSS Score
0.199
Published
2023-05-27
Code Injection in GitHub repository openemr/openemr prior to 7.0.1.
CVSS Score
4.6
EPSS Score
0.001
Published
2023-05-27
Improper Access Control in GitHub repository openemr/openemr prior to 7.0.1.
CVSS Score
6.3
EPSS Score
0.001
Published
2023-05-27
Missing Authorization in GitHub repository openemr/openemr prior to 7.0.1.
CVSS Score
4.3
EPSS Score
0.002
Published
2023-05-27
Improper Input Validation in GitHub repository openemr/openemr prior to 7.0.1.
CVSS Score
8.1
EPSS Score
0.003
Published
2023-05-27


Contact Us

Shodan ® - All rights reserved