Total vulnerabilities in the database
An issue was discovered in OpenEMR before 5.0.1 Patch 7. SQL Injection exists in the SaveAudit function in /portal/lib/paylib.php and the portalAudit function in /portal/lib/appsql.class.php.
CVSS v3:
CVSS v2:
CWEs:
OWASP TOP 10: