Security Advisory

CVE-2020-28938

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-12-03 15:57:24
Last updated 2024-08-04 16:48:00
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

OpenClinic version 0.8.2 is affected by a stored XSS vulnerability in lib/Check.php that allows users of the application to force actions on behalf of other users.