CVE编号 | CVE-2025-25925 |
---|---|
发布日期 | 2025-03-11T00:00:00.000Z |
更新日期 | 2025-03-12T15:23:46.471Z |
状态 | PUBLISHED |
受影响的供应商 | n/a |
受影响的产品 | n/a |
描述 | A stored cross-scripting (XSS) vulnerability in Openmrs v2.4.3 Build 0ff0ed allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the personName.middleName parameter at /openmrs/admin/patients/shortPatientForm.form. |
参考链接: