CVE-2020-14485

Publication date

2020-07-20 14:45:10

Family

icscert

State

PUBLISHED

Description

OpenClinic GA versions 5.09.02 and 5.89.05b may allow an attacker to bypass client-side access controls or use a crafted request to initiate a session with limited functionality, which may allow execution of admin functions such as SQL queries.