VYPR

Openclinic Ga

by Freemedsoftware

CVEs (2)

  • CVE-2020-14487CriJul 29, 2020
    risk 0.61cvss 9.4epss 0.02

    OpenClinic GA 5.09.02 contains a hidden default user account that may be accessed if an administrator has not expressly turned off this account, which may allow an attacker to login and execute arbitrary commands.

  • CVE-2020-14488HigJul 29, 2020
    risk 0.57cvss 8.8epss 0.02

    OpenClinic GA 5.09.02 and 5.89.05b does not properly verify uploaded files, which may allow a low-privilege user to upload and execute arbitrary files on the system.