CVE-2021-47817 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

OpenEMR 5.0.2.1 contains a cross-site scripting vulnerability that allows authenticated attackers to inject malicious JavaScript through user profile parameters…
Medium CVSS: 4.8

CVE-2021-47817

OpenEMR 5.0.2.1 contains a cross-site scripting vulnerability that allows authenticated attackers to inject malicious JavaScript through user profile parameters. Attackers can exploit the vulnerability by crafting a malicious payload to download and execute a web shell, enabling remote command execution on the vulnerable OpenEMR instance.
Vendor
Open-emr
Product
Openemr
CWE
CWE-79
Yayın Tarihi
2026-01-21 18:16:09
Güncelleme
2026-02-02 17:40:10
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-

Kategoriler

Referanslar