Vulnerabilities
Vulnerable Software
Open-Emr:  >> Openemr  >> 6.0.0.1  Security Vulnerabilities
Reflected Cross Site Scripting in GitHub repository openemr/openemr prior to 6.0.0.4.
CVSS Score
4.6
EPSS Score
0.006
Published
2022-03-30
Stored Cross Site Scripting in GitHub repository openemr/openemr prior to 6.0.0.2.
CVSS Score
8.0
EPSS Score
0.515
Published
2022-03-30
Accounting User Can Download Patient Reports in openemr in GitHub repository openemr/openemr prior to 6.1.0.
CVSS Score
6.5
EPSS Score
0.009
Published
2022-03-30
In OpenEMR, versions 5.0.0 to 6.0.0.1 are vulnerable to weak password requirements as it does not enforce a maximum password length limit. If a malicious user is aware of the first 72 characters of the victim user’s password, he can leverage it to an account takeover.
CVSS Score
8.1
EPSS Score
0.013
Published
2021-06-24


Contact Us

Shodan ® - All rights reserved