Lucene search

K
prionPRIOn knowledge basePRION:CVE-2017-7990
HistoryApr 21, 2017 - 12:59 a.m.

Cross site request forgery (csrf)

2017-04-2100:59:00
PRIOn knowledge base
www.prio-n.com
9

8.7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

40.8%

The Reporting Module 1.12.0 for OpenMRS allows CSRF attacks with resultant XSS, in which administrative authentication is hijacked to insert JavaScript into a name field in webapp/reports/manageReports.jsp.

CPENameOperatorVersion
openmrs_module_reportingeq1.12.0

8.7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

40.8%

Related for PRION:CVE-2017-7990