Open-emr

Openemr

221 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 8.73%
  • Veröffentlicht 23.05.2025 15:35:01
  • Zuletzt bearbeitet 02.07.2025 00:36:14

OpenEMR is a free and open source electronic health records and medical practice management application. A stored cross-site scripting (XSS) vulnerability in versions prior to 7.0.3.4 allows any authenticated user with patient creation and editing pr...

Exploit
  • EPSS 0.26%
  • Veröffentlicht 23.05.2025 15:31:52
  • Zuletzt bearbeitet 02.07.2025 00:41:37

OpenEMR is a free and open source electronic health records and medical practice management application. A logging oversight in versions prior to 7.0.3.4 allows password change events to go unrecorded on the client-side log viewer, preventing adminis...

Exploit
  • EPSS 8.93%
  • Veröffentlicht 23.05.2025 15:15:32
  • Zuletzt bearbeitet 02.07.2025 00:45:22

OpenEMR is a free and open source electronic health records and medical practice management application. A stored cross-site scripting (XSS) vulnerability in versions prior to 7.0.3.4 allows any authenticated user with patient creation privileges to ...

Exploit
  • EPSS 6.05%
  • Veröffentlicht 03.04.2025 00:00:00
  • Zuletzt bearbeitet 08.04.2025 20:21:55

OpenEMR 7.0.2 is vulnerable to SQL Injection via \openemr\library\classes\Pharmacy.class.php, \controllers\C_Pharmacy.class.php and \openemr\controller.php.

Exploit
  • EPSS 14.96%
  • Veröffentlicht 01.04.2025 15:16:07
  • Zuletzt bearbeitet 07.05.2025 15:35:41

OpenEMR is a free and open source electronic health records and medical practice management application. Prior to 7.0.3.1, the Patient Image feature in OpenEMR is vulnerable to cross-site scripting attacks via the EXIF title in an image. This vulnera...

Exploit
  • EPSS 0.44%
  • Veröffentlicht 31.03.2025 17:15:42
  • Zuletzt bearbeitet 30.04.2025 16:08:43

OpenEMR is a free and open source electronic health records and medical practice management application. An Out-of-Band Server-Side Request Forgery (OOB SSRF) vulnerability was identified in OpenEMR, allowing an attacker to force the server to make u...

Exploit
  • EPSS 0.31%
  • Veröffentlicht 31.03.2025 16:15:25
  • Zuletzt bearbeitet 30.04.2025 16:08:29

OpenEMR is a free and open source electronic health records and medical practice management application. OpenEMR allows reflected cross-site scripting (XSS) in the AJAX Script interface\super\layout_listitems_ajax.php via the target parameter. This v...

Exploit
  • EPSS 10.44%
  • Veröffentlicht 31.03.2025 16:15:25
  • Zuletzt bearbeitet 13.05.2025 13:36:27

OpenEMR is a free and open source electronic health records and medical practice management application. A stored XSS vulnerability in the Bronchitis form component of OpenEMR allows anyone who is able to edit a bronchitis form to steal credentials f...

Exploit
  • EPSS 0.25%
  • Veröffentlicht 31.03.2025 16:15:24
  • Zuletzt bearbeitet 13.05.2025 13:36:30

OpenEMR is a free and open source electronic health records and medical practice management application. The POST parameter hidden_subcategory is output to the page without being properly processed. This leads to a reflected cross-site scripting (XSS...

Exploit
  • EPSS 0.83%
  • Veröffentlicht 25.03.2025 20:29:29
  • Zuletzt bearbeitet 06.05.2025 19:26:56

OpenEMR is a free and open source electronic health records and medical practice management application. Versions prior to 7.3.0 are vulnerable to Directory Traversal in the Load Code feature. Version 7.3.0 contains a patch for the issue.