CVE-2018-1000650
20.08.2018, 19:31
LibreHealthIO lh-ehr version REL-2.0.0 contains a SQL Injection vulnerability in Show Groups Popup SQL query functions that can result in Ability to perform malicious database queries. This attack appear to be exploitable via User controlled parameters.
| Vendor | Product | Version |
|---|---|---|
| librehealth | librehealth_ehr | 2.0.0 |
𝑥
= Vulnerable software versions