ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-29139”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-29139
Published
2021-02-15
CVSS:
7.2
ShadowTrackr CVSS:
4.8
Summary:
A SQL injection vulnerability in interface/main/finder/patient_select.php from library/patient.inc in OpenEMR before 5.0.2.5 allows a remote authenticated attacker to execute arbitrary SQL commands via the searchFields parameter.