216.73.217.80

CVE-2025-30161

· Published 31/03/2025 16:15 · Modified 01/04/2025 20:26

Labels: CVE-2025-30161 2025-03-31CVE-2025-30161CWE-80[email protected]

Essential information

Published
31/03/2025 16:15
Modified
01/04/2025 20:26
Author
Creator
CVSS
8.4 HIGH (v3) 8.4 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

OpenEMR is a free and open source electronic health records and medical practice management application. A stored XSS vulnerability in the Bronchitis form component of OpenEMR allows anyone who is able to edit a bronchitis form to steal credentials from administrators. This vulnerability is fixed in 7.0.3.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
openemr / openemr cpe:2.3:a:openemr:openemr:7.0.3:*:*:*:*:*:*:*
openemr / openemr cpe:2.3:a:openemr:openemr:*:*:*:*:*:*:*:*

References