Beveiligingsadvies

CVE-2018-10572

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2018-04-30 17:00:00
Laatst bijgewerkt 2024-08-05 07:39:07
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

interface/patient_file/letter.php in OpenEMR before 5.0.1 allows remote authenticated users to bypass intended access restrictions via the newtemplatename and form_body parameters.