Security Advisory

CVE-2021-40352

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-09-01 12:20:41
Last updated 2024-08-04 02:44:09
Assigner mitre
State PUBLISHED

Description

OpenEMR 6.0.0 has a pnotes_print.php?noteid= Insecure Direct Object Reference vulnerability via which an attacker can read the messages of all users.