First published: Fri Jul 22 2022(Updated: )
Data Access from Outside Expected Data Manager Component in GitHub repository openemr/openemr prior to 7.0.0.
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Open-emr Openemr | <7.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-2493 is a vulnerability that allows data access from outside the expected Data Manager component in the GitHub repository openemr/openemr prior to version 7.0.0.
CVE-2022-2493 has a severity rating of 8.1 (high).
The Open-emr Openemr software versions prior to 7.0.0 are affected by CVE-2022-2493.
To fix CVE-2022-2493, update your Open-emr Openemr software to version 7.0.0 or later.
You can find more information about CVE-2022-2493 in the following references: [GitHub Commit](https://github.com/openemr/openemr/commit/871ae5198d8ca18fd17257ae7c5c906a52dca908) and [Huntr.dev](https://huntr.dev/bounties/8a4d54e2-e1cd-47c3-9304-ac8be87c80f1).