LibreHealth EMR v2.0.0 is vulnerable to XSS that results in the ability to force arbitrary actions on behalf of other users including administrators.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-07-15T19:31:45

Updated: 2024-08-04T11:28:13.864Z

Reserved: 2020-03-31T00:00:00

Link: CVE-2020-11436

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-07-15T20:15:12.740

Modified: 2020-07-17T14:57:59.593

Link: CVE-2020-11436

cve-icon Redhat

No data.