CVE-2014-8072: Medium severity openmrs vulnerability
Published Oct 23, 2014
·Updated
The administration module in OpenMRS 2.1 Standalone Edition allows remote authenticated users to obtain read access via a direct request to /admin.
Affected Software
1 affected component
OpenMRS Openmrs=2.1
Event History
Oct 23, 2014
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-8072?
The severity of CVE-2014-8072 is considered to be medium due to the potential for unauthorized access to sensitive information.
2
How do I fix CVE-2014-8072?
To fix CVE-2014-8072, upgrade OpenMRS to a version higher than 2.1 that has addressed this vulnerability.
3
Who is affected by CVE-2014-8072?
Users of OpenMRS Standalone Edition version 2.1 are affected by CVE-2014-8072.
4
What type of vulnerability is CVE-2014-8072?
CVE-2014-8072 is an access control vulnerability that allows remote authenticated users to gain unauthorized access.
5
When was CVE-2014-8072 disclosed?
CVE-2014-8072 was disclosed in November 2014.