CVE-2019-16862
21.10.2019, 01:15
Reflected XSS in interface/forms/eye_mag/view.php in OpenEMR 5.x before 5.0.2.1 allows a remote attacker to execute arbitrary code in the context of a user's session via the pid parameter.
Vendor | Product | Version |
---|---|---|
open-emr | openemr | 5.0.0 ≤ 𝑥 < 5.0.2.1 |
𝑥
= Vulnerable software versions