Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Isears

#16900of 53,624
15.9Total CVSS
Vulnerabilities · 2
Medium
1
Critical
1
PT-2022-11742
6.1
2022-12-27
Openmrs · Openmrs Admin Ui Module · CVE-2021-4292
**Name of the Vulnerable Software and Affected Versions** OpenMRS Admin UI Module versions up to 1.4.x **Description** A vulnerability was found in the Manage Privilege Page component, affecting the processing of the file `omod/src/main/webapp/pages/metadata/privileges/privilege.gsp`. This issue leads to cross-site scripting and can be initiated remotely. **Recommendations** For OpenMRS Admin UI Module versions up to 1.4.x, upgrade to version 1.5.0 to address this issue.
PT-2018-13609
9.8
2018-09-05
Openmrs · Openmrs Reference Application · CVE-2018-16521
**Name of the Vulnerable Software and Affected Versions** OpenMRS Reference Application version 2.8.0 HTML Form Entry version 3.7.0 **Description** A vulnerability exists due to an XML External Entity (XXE) issue. This allows for potential exploitation. **Recommendations** For OpenMRS Reference Application version 2.8.0, update HTML Form Entry to a version that fixes the XXE vulnerability. For HTML Form Entry version 3.7.0, consider disabling XML external entity processing until a patch is available.