Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Mynameiswillporter

#20671of 53,638
12.2Total CVSS
Vulnerabilities · 2
Medium
2
PT-2019-14837
6.1
2019-10-21
Openemr · Openemr · CVE-2019-16862
**Name of the Vulnerable Software and Affected Versions** OpenEMR versions prior to 5.0.2.1 **Description** The issue allows a remote attacker to execute arbitrary code in the context of a user's session. This is achieved via the `pid` parameter in the interface/forms/eye mag/view.php file. **Recommendations** For versions prior to 5.0.2.1, update to version 5.0.2.1 or later to resolve the issue. As a temporary workaround, consider restricting access to the interface/forms/eye mag/view.php file to minimize the risk of exploitation. Avoid using the `pid` parameter in the affected file until the issue is resolved.
PT-2019-14985
6.1
2019-10-04
Softwarex · Softwarex · CVE-2019-17179
**Name of the Vulnerable Software and Affected Versions** SoftwareX versions 4.1.0 through 5.0.2 **Description** The issue affects various versions of the software, with a fix available in version 5.0.2.1. **Recommendations** For versions 4.1.0 through 5.0.2, update to version 5.0.2.1 to resolve the issue.