Vulnerabilities > Apperta

DATE CVE VULNERABILITY TITLE RISK
2022-04-06 CVE-2021-40374 Cross-site Scripting vulnerability in Apperta Openeye 3.5.1
A stored cross-site scripting (XSS) vulnerability was identified in Apperta Foundation OpenEyes 3.5.1.
network
low complexity
apperta CWE-79
5.4
2022-04-06 CVE-2021-40375 Information Exposure vulnerability in Apperta Openeyes 3.5.1
Apperta Foundation OpenEyes 3.5.1 allows remote attackers to view the sensitive information of patients without having the intended level of privilege.
network
low complexity
apperta CWE-200
6.5