CVE-2018-17179
An issue was discovered in OpenEMR before 5.0.1 Patch 7. There is SQL Injection in the make_task function in /interface/forms/eye_mag/php/taskman_functions.php via /interface/forms/eye_mag/taskman.php.
- Affected products
- Openemr
- Open-emr Openemr
- < 5.0.1.7
- Fix
- Available
- CVSS 3.0
- 9.8 CRITICAL
- EPSS
- 12.8% (96th percentile)
- Weakness
- CWE-89
- NVD status
- Modified
- Published
- 2019-05-17
CVE-2018-17179 at NVD
3 known exploits for CVE-2018-17179
Proof-of-concept code and exploit modules indexed by Sploitus