LibreHealthIO lh-ehr version REL-2.0.0 contains a SQL Injection vulnerability in Show Groups Popup SQL query functions that can result in Ability to perform malicious database queries. This attack appear to be exploitable via User controlled parameters.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2018-08-20T19:00:00Z
Updated: 2024-09-16T21:04:06.475Z
Reserved: 2018-08-20T00:00:00Z
Link: CVE-2018-1000650
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-08-20T19:31:43.480
Modified: 2024-11-21T03:40:19.580
Link: CVE-2018-1000650
Redhat
No data.