peter bassill · operator
$ cve CVE-2018-15152 JSON

CVE-2018-15152 EXPLOIT

9.1
CRITICAL · CVSS 3.1 · EPSS 25.9% (pctl 98)

Patch early

A public exploit exists.

Description

Authentication bypass vulnerability in portal/account/register.php in versions of OpenEMR before 5.0.1.4 allows a remote attacker to access (1) portal/add_edit_event_user.php, (2) portal/find_appt_popup_user.php, (3) portal/get_allergies.php, (4) portal/get_amendments.php, (5) portal/get_lab_results.php, (6) portal/get_medications.php, (7) portal/get_patient_documents.php, (8) portal/get_problems.php, (9) portal/get_profile.php, (10) portal/portal_payment.php, (11) portal/messaging/messages.php, (12) portal/messaging/secure_chat.php, (13) portal/report/pat_ledger.php, (14) portal/report/portal_custom_report.php, or (15) portal/report/portal_patient_report.php without authenticating as a patient.

Scoring

CVSS9.1 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
EPSS25.94% — more likely to be exploited than 98% of all CVEs
WeaknessCWE-287
On CISA KEVno
Public exploityes
Published2018-08-15
Last modified2026-06-17

Affected (1)

VendorProduct
open-emropenemr

Public exploits

SourceTitleDate
exploit-dbOpenEMR 5.0.1.3 - Authentication Bypass2021-06-16

References

→ the Explorer  ·  watch your stack  ·  NVD