Vulnerabilities
Vulnerable Software
Open-Emr:  >> Openemr  >> 7.0.2.2  Security Vulnerabilities
OpenEMR is a free and open source electronic health records and medical practice management application. OpenEMR allows reflected cross-site scripting (XSS) in the AJAX Script interface\super\layout_listitems_ajax.php via the target parameter. This vulnerability is fixed in 7.0.3.
CVSS Score
6.4
EPSS Score
0.003
Published
2025-03-31
OpenEMR is a free and open source electronic health records and medical practice management application. A stored XSS vulnerability in the Bronchitis form component of OpenEMR allows anyone who is able to edit a bronchitis form to steal credentials from administrators. This vulnerability is fixed in 7.0.3.
CVSS Score
8.4
EPSS Score
0.109
Published
2025-03-31
OpenEMR is a free and open source electronic health records and medical practice management application. The POST parameter hidden_subcategory is output to the page without being properly processed. This leads to a reflected cross-site scripting (XSS) vul;nerability in CAMOS new.php. This vulnerability is fixed in 7.0.3.
CVSS Score
7.2
EPSS Score
0.003
Published
2025-03-31
OpenEMR is a free and open source electronic health records and medical practice management application. Versions prior to 7.3.0 are vulnerable to Directory Traversal in the Load Code feature. Version 7.3.0 contains a patch for the issue.
CVSS Score
4.6
EPSS Score
0.008
Published
2025-03-25


Contact Us

Shodan ® - All rights reserved