CVE-2014-8072 Information

Description

The administration module in OpenMRS 2.1 Standalone Edition allows remote authenticated users to obtain read access via a direct request to /admin.

Reference

http://packetstormsecurity.com/files/128748/OpenMRS-2.1-Access-Bypass-XSS-CSRF.html http://www.securityfocus.com/bid/70664 https://exchange.xforce.ibmcloud.com/vulnerabilities/97693

Share on: