OpenEMR 6.0.0 has a pnotes_print.php?noteid= Insecure Direct Object Reference vulnerability via which an attacker can read the messages of all users.
The system's authorization functionality does not prevent one user from gaining access to another user's data or record by modifying the key value identifying the data.
Link | Tags |
---|---|
https://www.open-emr.org/wiki/index.php/Securing_OpenEMR | product vendor advisory |
https://github.com/allenenosh/CVE-2021-40352 | third party advisory exploit |
http://packetstormsecurity.com/files/164011/OpenEMR-6.0.0-Insecure-Direct-Object-Reference.html | exploit vdb entry third party advisory |