CVE-2017-1000240

Publication date

2017-11-17 03:00:00

Family

mitre

State

PUBLISHED

Description

The application OpenEMR is affected by multiple reflected & stored Cross-Site Scripting (XSS) vulnerabilities affecting version 5.0.0 and prior versions. These vulnerabilities could allow remote authenticated attackers to inject arbitrary web script or HTML.