Description
In OpenMRS 2.9 and prior, the export functionality of the Data Exchange Module does not properly redirect to a login page when an unauthenticated user attempts to access it. This allows the export of potentially sensitive information.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-26892 | In OpenMRS 2.9 and prior, the export functionality of the Data Exchange Module does not properly redirect to a login page when an unauthenticated user attempts to access it. This allows the export of potentially sensitive information. |
References
| Link | Providers |
|---|---|
| https://www.tenable.com/security/research/tra-2020-18 |
|
History
No history.
Status: PUBLISHED
Assigner: tenable
Published:
Updated: 2024-08-04T08:39:25.743Z
Reserved: 2020-01-06T00:00:00.000Z
Link: CVE-2020-5733
No data.
Status : Modified
Published: 2020-04-17T19:15:15.123
Modified: 2024-11-21T05:34:30.183
Link: CVE-2020-5733
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD