Vulnerabilities > Openclinic Project > Openclinic > 0.8.20160412

DATE CVE VULNERABILITY TITLE RISK
2021-06-16 CVE-2020-20444 Missing Authorization vulnerability in Openclinic Project Openclinic 0.8.20160412
Jact OpenClinic 0.8.20160412 allows the attacker to read server files after login to the the admin account by an infected 'file' GET parameter in '/shared/view_source.php' which "could" lead to RCE vulnerability .
network
low complexity
openclinic-project CWE-862
7.2