Open-emr

Openemr

221 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht Exploit
  • EPSS 0.49%
  • Veröffentlicht 25.02.2026 18:14:03
  • Zuletzt bearbeitet 27.02.2026 14:42:29

OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0, an SQL injection vulnerability in the Patient REST API endpoint allows authenticated users with API access to execute arb...

Exploit
  • EPSS 0.24%
  • Veröffentlicht 25.02.2026 18:10:22
  • Zuletzt bearbeitet 27.02.2026 14:43:28

OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0, an authorization bypass vulnerability in the patient portal signature endpoint allows authenticated portal users to uploa...

Medienbericht Exploit
  • EPSS 0.27%
  • Veröffentlicht 25.02.2026 17:45:24
  • Zuletzt bearbeitet 27.02.2026 14:44:15

OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0, an authorization bypass vulnerability in the FHIR CareTeam resource endpoint allows patient-scoped FHIR tokens to access ...

Medienbericht Exploit
  • EPSS 0.78%
  • Veröffentlicht 25.02.2026 17:39:20
  • Zuletzt bearbeitet 27.02.2026 14:51:47

OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0, an SQL injection vulnerability in the Immunization module allows any authenticated user to execute arbitrary SQL queries,...

  • EPSS 0.22%
  • Veröffentlicht 25.02.2026 03:16:04
  • Zuletzt bearbeitet 25.02.2026 16:56:15

OpenEMR is a free and open source electronic health records and medical practice management application. Versions prior to 8.0.0 have an information disclosure vulnerability that leaks the entire contact information for all users, organizations, and ...

Exploit
  • EPSS 0.33%
  • Veröffentlicht 25.02.2026 01:55:43
  • Zuletzt bearbeitet 25.02.2026 16:56:00

OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0, a Broken Access Control vulnerability exists in the OpenEMR order types management system, allowing low-privilege users (...

Exploit
  • EPSS 0.26%
  • Veröffentlicht 25.02.2026 01:53:15
  • Zuletzt bearbeitet 25.02.2026 16:01:07

OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0, the server does not properly validate user permission. Unauthorized users can view the information of authorized users. V...

Exploit
  • EPSS 0.26%
  • Veröffentlicht 25.02.2026 01:50:22
  • Zuletzt bearbeitet 25.02.2026 16:54:00

OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0, the OpenEMR application is vulnerable to an access control flaw that allows low-privileged users, such as receptionists, ...

Exploit
  • EPSS 0.26%
  • Veröffentlicht 25.02.2026 01:47:59
  • Zuletzt bearbeitet 25.02.2026 16:54:24

OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0, a Broken Access Control vulnerability exists in OpenEMR’s edih_main.php endpoint, which allows any authenticated user—inc...

Exploit
  • EPSS 2.16%
  • Veröffentlicht 25.02.2026 01:44:30
  • Zuletzt bearbeitet 25.02.2026 16:56:53

OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 7.0.4, the `disposeDocument()` method in `EtherFaxActions.php` allows authenticated users to read arbitrary files from the serve...