Security News

Critical OpenEMR vulnerabilities may allow attackers to access patients’ health records
2023-01-30 12:21

Critical vulnerabilities discovered in OpenEMR can be chained to gain code execution on a server running a vulnerable version of the popular open-source electronic health record system. Discovered, privately reported and now publicly documented by researcher Dennis Brinkrolf, the vulnerabilities have been promptly patched by the OpenEMR maintainers at the end of November 2022.

Critical OpenEMR Vulnerabilities Give Hackers Remote Access to Health Records
2020-10-30 12:55

Several vulnerabilities found by researchers in the OpenEMR software can be exploited by remote hackers to obtain medical records and compromise healthcare infrastructure. Researchers at Swiss-based code quality and security solutions provider SonarSource discovered earlier this year that OpenEMR is affected by four types of vulnerabilities that impact servers using the Patient Portal component.

Numerous OpenEMR Security Flaws Found; Most Patched
2018-08-09 20:33

Open Source Electronic Medical Records System Used WorldwideNearly two dozen security weaknesses in OpenEMR - open source electronic medical record and practice management software - left patient...

OpenEMR vulnerabilities put patients’ info, medical records at risk
2018-08-08 16:03

A slew of vulnerabilities in OpenEMR allowed attackers to access random patients’ health records, view data from a target database, escalate their privileges on the server, execute system...

Serious OpenEMR Flaws Expose Medical Records
2018-08-08 16:00

Researchers have discovered nearly two dozen vulnerabilities in the OpenEMR software, including critical flaws that can be exploited to gain unauthorized access to medical records. read more

OpenEMR flaw leaves millions of medical records exposed to attackers
2017-11-29 19:32

A vulnerability in the free, open source electronic medical record and medical practice management software OpenEMR can be exploited to steal patients’ medical records and other personally...