Filtered by vendor Openmrs
Subscriptions
Filtered by product Htmlformentry
Subscriptions
Total
1 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2020-24621 | 1 Openmrs | 1 Htmlformentry | 2020-10-05 | 8.8 High |
A remote code execution (RCE) vulnerability was discovered in the htmlformentry (aka HTML Form Entry) module before 3.11.0 for OpenMRS. By leveraging path traversal, a malicious Velocity Template Language file could be written to a directory. This file could then be accessed and executed. |
Page 1 of 1.