VendorsAppertaopeneye3.5.1
Vulnerabilities

Apperta The Apperta Foundation OpenEyes 3.5.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2021-40374
A stored cross-site scripting (XSS) vulnerability was identified in Apperta Foundation OpenEyes 3.5.1. Updating a patient's details allows remote attackers to inject arbitrary web script or HTML via the Address1 parameter. This JavaScript then executes when the patient profile is loaded, which could be used in a XSS attack.
Published 2022-04-06 · Modified
5.4EPSS 0.012