VendorsLibreHealthlibrehealth_ehrall versions
Vulnerabilities

LibreHealth EHR

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

22CVEs
CVE-2022-31496
LibreHealth EHR Base 2.0.0 allows incorrect interface/super/manage_site_files.php access.
Published 2022-06-08 · Modified
9.0EPSS 0.020
CVE-2020-11439
LibreHealth EMR v2.0.0 is affected by a Local File Inclusion issue allowing arbitrary PHP to be included and executed within the EMR application.
Published 2020-07-15 · Modified
9.0EPSS 0.020
CVE-2020-11436
LibreHealth EMR v2.0.0 is vulnerable to XSS that results in the ability to force arbitrary actions on behalf of other users including administrators.
Published 2020-07-15 · Modified
9.0EPSS 0.013
CVE-2018-1000646
LibreHealthIO LH-EHR version REL-2.0.0 contains an Authenticated Unrestricted File Write vulnerability in Import template that can result in write files with malicious content and may lead to remote code execution.
Published 2018-08-20 · Modified
8.8EPSS 0.033
CVE-2018-1000839
LH-EHR version REL-2_0_0 contains a Arbitrary File Upload vulnerability in Profile picture upload that can result in Remote Code Execution. This attack appear to be exploitable via Uploading a PHP file with image MIME type.
Published 2018-12-20 · Modified
8.8EPSS 0.031
CVE-2018-1000648
LibreHealthIO lh-ehr version REL-2.0.0 contains a Authenticated Unrestricted File Write vulnerability in Patient file letter functions that can result in Write files with malicious content and may lead to remote code execution. This attack appear to be exploitable via User controlled parameters.
Published 2018-08-20 · Modified
8.8EPSS 0.028
CVE-2018-1000649
LibreHealthIO lh-ehr version REL-2.0.0 contains a Authenticated Unrestricted File Write in letter.php (2) vulnerability in Patient file letter functions that can result in Write files with malicious content and may lead to remote code execution. This attack appear to be exploitable via User controlled input.
Published 2018-08-20 · Modified
8.8EPSS 0.028
CVE-2020-23829
interface/new/new_comprehensive_save.php in LibreHealth EHR 2.0.0 suffers from an authenticated file upload vulnerability, allowing remote attackers to achieve remote code execution (RCE) on the hosting webserver by uploading a maliciously crafted image.
Published 2020-09-01 · Modified
8.8EPSS 0.025
CVE-2018-1000650
LibreHealthIO lh-ehr version REL-2.0.0 contains a SQL Injection vulnerability in Show Groups Popup SQL query functions that can result in Ability to perform malicious database queries. This attack appear to be exploitable via User controlled parameters.
Published 2018-08-20 · Modified
8.8EPSS 0.015
CVE-2022-29938
In LibreHealth EHR 2.0.0, lack of sanitization of the GET parameter payment_id in interface\billing\new_payment.php via interface\billing\payment_master.inc.php leads to SQL injection.
Published 2022-05-05 · Modified
8.8EPSS 0.015
CVE-2020-11438
LibreHealth EMR v2.0.0 is affected by systemic CSRF.
Published 2020-07-15 · Modified
8.8EPSS 0.006
CVE-2018-1000647
LibreHealthIO lh-ehr version REL-2.0.0 contains a Authenticated Unrestricted File Deletion vulnerability in Import template that can result in Denial of service. This attack appear to be exploitable via User controlled parameter.
Published 2018-08-20 · Modified
7.1EPSS 0.015
CVE-2018-1000645
LibreHealthIO lh-ehr version <REL-2.0.0 contains an Authenticated Local File Disclosure vulnerability in Importing of templates allows local file disclosure that can result in Disclosure of sensitive files on the server. This attack appear to be exploitable via User controlled variable in import templates function.
Published 2018-08-20 · Modified
6.5EPSS 0.014
CVE-2022-31494
LibreHealth EHR Base 2.0.0 allows gacl/admin/acl_admin.php action XSS.
Published 2022-06-06 · Modified
6.1EPSS 0.010
CVE-2022-31492
Cross Site scripting (XSS) vulnerability inLibreHealth EHR Base 2.0.0 via interface/usergroup/usergroup_admin_add.php Username.
Published 2022-06-06 · Modified
6.1EPSS 0.010
CVE-2022-31493
LibreHealth EHR Base 2.0.0 allows gacl/admin/acl_admin.php acl_id XSS.
Published 2022-06-06 · Modified
6.1EPSS 0.010
CVE-2022-31495
LibreHealth EHR Base 2.0.0 allows gacl/admin/acl_admin.php return_page XSS.
Published 2022-06-07 · Modified
6.1EPSS 0.010
CVE-2022-31498
LibreHealth EHR Base 2.0.0 allows interface/orders/patient_match_dialog.php key XSS.
Published 2022-06-06 · Modified
6.1EPSS 0.010
CVE-2022-31497
LibreHealth EHR Base 2.0.0 allows interface/main/finder/finder_navigation.php patient XSS.
Published 2022-06-08 · Modified
6.1EPSS 0.009
CVE-2022-29939
In LibreHealth EHR 2.0.0, lack of sanitization of the GET parameters debug and InsId in interface\billing\sl_eob_process.php leads to multiple cross-site scripting (XSS) vulnerabilities.
Published 2022-05-05 · Modified
5.4EPSS 0.009
CVE-2022-29940
In LibreHealth EHR 2.0.0, lack of sanitization of the GET parameters formseq and formid in interface\orders\find_order_popup.php leads to multiple cross-site scripting (XSS) vulnerabilities.
Published 2022-05-05 · Modified
5.4EPSS 0.009
CVE-2020-11437
LibreHealth EMR v2.0.0 is affected by SQL injection allowing low-privilege authenticated users to enumerate the database.
Published 2020-07-15 · Modified
4.3EPSS 0.009