Vulnerabilities > Openmrs > High

DATE CVE VULNERABILITY TITLE RISK
2022-02-22 CVE-2022-23612 Unspecified vulnerability in Openmrs
OpenMRS is a patient-based medical record system focusing on giving providers a free customizable electronic medical record system.
network
low complexity
openmrs
7.5
2020-09-25 CVE-2020-24621 Path Traversal vulnerability in Openmrs Htmlformentry
A remote code execution (RCE) vulnerability was discovered in the htmlformentry (aka HTML Form Entry) module before 3.11.0 for OpenMRS.
network
low complexity
openmrs CWE-22
8.8
2017-04-21 CVE-2017-7990 Cross-Site Request Forgery (CSRF) vulnerability in Openmrs Module Reporting 1.12.0
The Reporting Module 1.12.0 for OpenMRS allows CSRF attacks with resultant XSS, in which administrative authentication is hijacked to insert JavaScript into a name field in webapp/reports/manageReports.jsp.
network
low complexity
openmrs CWE-352
8.8