Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-62206
HistoryJun 13, 2022 - 12:00 a.m.

LibreHealth EHR Cross-Site Scripting Vulnerability (CNVD-2022-62206)

2022-06-1300:00:00
China National Vulnerability Database
www.cnvd.org.cn
22
librehealth ehr
cross-site scripting
vulnerability
client-side
javascript code
healthcare settings

EPSS

0.001

Percentile

30.8%

LibreHealth EHR is a clinically-focused electronic health record (EHR) system designed to be easy to use out of the box and customizable for use in a variety of healthcare settings. The navigation.php page lacks filtering and escaping for parameters. An attacker could exploit this vulnerability to execute JavaScript code on the client side.

EPSS

0.001

Percentile

30.8%

Related for CNVD-2022-62206