VYPR

Openemr

by Openemr

Source repositories

CVEs (229)

  • CVE-2026-24848CriMar 3, 2026
    risk 0.65cvss 9.9epss 0.06

    OpenEMR is a free and open source electronic health records and medical practice management application. In 7.0.4 and earlier, the disposeDocument() method in EtherFaxActions.php allows authenticated users to write arbitrary content to arbitrary locations on the server…

  • CVE-2024-22611CriApr 3, 2025
    risk 0.64cvss 9.8epss 0.06

    OpenEMR 7.0.2 is vulnerable to SQL Injection via \openemr\library\classes\Pharmacy.class.php, \controllers\C_Pharmacy.class.php and \openemr\controller.php.

  • CVE-2020-13567CriApr 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Multiple SQL injection vulnerabilities exist in phpGACL 3.3.7. A specially crafted HTTP request can lead to a SQL injection. An attacker can send an HTTP request to trigger this vulnerability.

  • CVE-2020-19364HigJan 20, 2021
    risk 0.63cvss 8.8epss 0.71

    OpenEMR 5.0.1 allows an authenticated attacker to upload and execute malicious PHP scripts through /controller.php.

  • CVE-2020-36243HigFeb 7, 2021
    risk 0.62cvss 8.8epss 0.64

    The Patient Portal of OpenEMR 5.0.2.1 is affected by a Command Injection vulnerability in /interface/main/backup.php. To exploit the vulnerability, an authenticated attacker can send a POST request that executes arbitrary OS commands via shell metacharacters.

  • CVE-2017-9380HigJun 2, 2017
    risk 0.61cvss 8.8epss 0.15

    OpenEMR 5.0.0 and prior allows low-privilege users to upload files of dangerous types which can result in arbitrary code execution within the context of the vulnerable application.

  • CVE-2013-10044HigAug 1, 2025
    risk 0.60cvss 8.8epss 0.01

    An authenticated SQL injection vulnerability exists in OpenEMR ≤ 4.1.1 Patch 14 that allows a low-privileged attacker to extract administrator credentials and subsequently escalate privileges. Once elevated, the attacker can exploit an unrestricted file upload flaw to achieve…

  • CVE-2020-13568HigApr 13, 2021
    risk 0.60cvss 8.8epss 0.30

    SQL injection vulnerability exists in phpGACL 3.3.7. A specially crafted HTTP request can lead to a SQL injection. An attacker can send an HTTP request to trigger this vulnerability in admin/edit_group.php, when the POST parameter action is “Submit”, the POST parameter…

  • CVE-2019-3968HigAug 20, 2019
    risk 0.58cvss 8.8epss 0.10

    In OpenEMR 5.0.1 and earlier, an authenticated attacker can execute arbitrary commands on the host system via the Scanned Forms interface when creating a new form.

  • CVE-2018-1000019HigFeb 9, 2018
    risk 0.58cvss 8.8epss 0.04

    OpenEMR version 5.0.0 contains a OS Command Injection vulnerability in fax_dispatch.php that can result in OS command injection by an authenticated attacker with any role. This vulnerability appears to have been fixed in 5.0.0 Patch 2 or higher.

  • CVE-2026-32127HigMar 11, 2026
    risk 0.57cvss 8.8epss 0.00

    OpenEMR is a free and open source electronic health records and medical practice management application. Prior to 8.0.0.1, OpenEMR contains a SQL injection vulnerability in the ajax graphs library that can be exploited by authenticated attackers. The vulnerability exists due to…

  • CVE-2023-22973HigFeb 22, 2023
    risk 0.57cvss 8.8epss 0.02

    A Local File Inclusion (LFI) vulnerability in interface/forms/LBF/new.php in OpenEMR < 7.0.0 allows remote authenticated users to execute code via the formname parameter.

  • CVE-2021-32104HigMay 7, 2021
    risk 0.57cvss 8.8epss 0.01

    A SQL injection vulnerability exists (with user privileges) in interface/forms/eye_mag/save.php in OpenEMR 5.0.2.1.

  • CVE-2021-32102HigMay 7, 2021
    risk 0.57cvss 8.8epss 0.01

    A SQL injection vulnerability exists (with user privileges) in library/custom_template/ajax_code.php in OpenEMR 5.0.2.1.

  • CVE-2020-13566HigApr 13, 2021
    risk 0.57cvss 8.8epss 0.02

    SQL injection vulnerabilities exist in phpGACL 3.3.7. A specially crafted HTTP request can lead to a SQL injection. An attacker can send an HTTP request to trigger this vulnerability In admin/edit_group.php, when the POST parameter action is “Delete”, the POST parameter…

  • CVE-2020-13569HigJan 28, 2021
    risk 0.57cvss 8.8epss 0.03

    A cross-site request forgery vulnerability exists in the GACL functionality of OpenEMR 5.0.2 and development version 6.0.0 (commit babec93f600ff1394f91ccd512bcad85832eb6ce). A specially crafted HTTP request can lead to the execution of arbitrary requests in the context of the…

  • CVE-2018-16795HigDec 31, 2020
    risk 0.57cvss 8.8epss 0.01

    OpenEMR 5.0.1.3 allows Cross-Site Request Forgery (CSRF) via library/ajax and interface/super, as demonstrated by use of interface/super/manage_site_files.php to upload a .php file.

  • CVE-2019-16404HigOct 21, 2019
    risk 0.57cvss 8.8epss 0.01

    Authenticated SQL Injection in interface/forms/eye_mag/js/eye_base.php in OpenEMR through 5.0.2 allows a user to extract arbitrary data from the openemr database via a non-parameterized INSERT INTO statement, as demonstrated by the providerID parameter.

  • CVE-2018-15152CriAug 15, 2018
    risk 0.57cvss 9.1epss 0.26

    Authentication bypass vulnerability in portal/account/register.php in versions of OpenEMR before 5.0.1.4 allows a remote attacker to access (1) portal/add_edit_event_user.php, (2) portal/find_appt_popup_user.php, (3) portal/get_allergies.php, (4) portal/get_amendments.php, (5)…

  • CVE-2018-15145CriAug 13, 2018
    risk 0.57cvss 9.8epss 0.02

    Multiple SQL injection vulnerabilities in portal/add_edit_event_user.php in versions of OpenEMR before 5.0.1.4 allow a remote attacker to execute arbitrary SQL commands via the (1) eid, (2) userid, or (3) pid parameter.

Page 1 of 12