Vulnerabilities
Vulnerable Software
Open-Emr:  >> Openemr  >> 5.0.2.1  Security Vulnerabilities
OpenEMR is a free and open source electronic health records and medical practice management application. Versions prior to 7.3.0 are vulnerable to Directory Traversal in the Load Code feature. Version 7.3.0 contains a patch for the issue.
CVSS Score
4.6
EPSS Score
0.001
Published
2025-03-25
An issue in open-emr before v.7.0.2 allows a remote attacker to escalate privileges via a crafted script to the formid parameter in the ereq_form.php component.
CVSS Score
3.5
EPSS Score
0.001
Published
2024-02-28
Improper Authorization in GitHub repository openemr/openemr prior to 7.0.1.
CVSS Score
6.3
EPSS Score
0.023
Published
2023-05-28
Cross-site Scripting (XSS) - Reflected in GitHub repository openemr/openemr prior to 7.0.1.
CVSS Score
8.3
EPSS Score
0.864
Published
2023-05-28
Cross-site Scripting (XSS) - Generic in GitHub repository openemr/openemr prior to 7.0.1.
CVSS Score
8.3
EPSS Score
0.865
Published
2023-05-28
Improper Access Control in GitHub repository openemr/openemr prior to 7.0.1.
CVSS Score
6.3
EPSS Score
0.004
Published
2023-05-27
Cross-site Scripting (XSS) - Stored in GitHub repository openemr/openemr prior to 7.0.1.
CVSS Score
4.7
EPSS Score
0.525
Published
2023-05-27
Code Injection in GitHub repository openemr/openemr prior to 7.0.1.
CVSS Score
4.6
EPSS Score
0.002
Published
2023-05-27
Improper Access Control in GitHub repository openemr/openemr prior to 7.0.1.
CVSS Score
6.3
EPSS Score
0.004
Published
2023-05-27
Missing Authorization in GitHub repository openemr/openemr prior to 7.0.1.
CVSS Score
4.3
EPSS Score
0.032
Published
2023-05-27


Contact Us

Shodan ® - All rights reserved