CVE-2020-5732
17.04.2020, 19:15
In OpenMRS 2.9 and prior, he import functionality of the Data Exchange Module does not properly redirect to a login page when an unauthenticated user attempts to access it. This allows unauthenticated users to use a feature typically restricted to administrators.
Vendor | Product | Version |
---|---|---|
openmrs | openmrs | 𝑥 ≤ 2.9.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration