PT-2022-11727 · Openmrs · Openmrs

Jnsereko

·

Published

2022-12-27

·

Updated

2024-05-17

·

CVE-2021-4288

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions OpenMRS openmrs-module-referenceapplication versions up to 2.11.x
Description This issue affects some unknown processing of the file omod/src/main/webapp/pages/userApp.gsp, leading to cross site scripting. The attack may be initiated remotely.
Recommendations For OpenMRS openmrs-module-referenceapplication versions up to 2.11.x, upgrade to version 2.12.0 to address this issue.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2021-4288

Affected Products

Openmrs