Non-Privilege User Can Created New Rule and Lead to Stored Cross Site Scripting in GitHub repository openemr/openemr prior to 6.0.0.4.
References
Link | Resource |
---|---|
https://github.com/openemr/openemr/commit/347ad614507183035d188ba14427bc162419778c | Patch Third Party Advisory |
https://huntr.dev/bounties/8025e31f-7dcf-4db9-ab07-06c1e055ab42 | Exploit Patch Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: @huntrdev
Published: 2022-03-30T11:05:28
Updated: 2022-03-30T11:05:28
Reserved: 2022-03-30T00:00:00
Link: CVE-2022-1179
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-03-30T12:15:08.070
Modified: 2022-04-04T19:50:38.147
Link: CVE-2022-1179
JSON object: View
Redhat Information
No data.
CWE