Skip to content

One brick to the IT world

@manfromkz

  • Home
  • About
  • Contact

Category: Research

CVE-2020-29140. SQL injection vulnerability in OpenEMR 6.0.0-dev, 5.0.2(5)

Ineffective use of add_escape_custom() in interface/reports/immunization_report.php leads to SQL injection in OpenEMR 6.0.0-dev, 5.0.2(5).

Published February 15, 2021
Categorized as PHP, Research Tagged open source, OpenEMR, research, SQL-injection

CVE-2020-29139. SQL injection vulnerability in OpenEMR 6.0.0-dev, 5.0.2(5)

Ineffective use of add_escape_custom() in library/patient.inc leads to SQL injection in OpenEMR 6.0.0-dev, 5.0.2(5).

Published February 15, 2021
Categorized as PHP, Research Tagged open source, OpenEMR, research, SQL-injection

Posts navigation

Newer posts Page 1 Page 2

Recent Posts

  • My speeches at OpenSysConf’22 and BeetechConf’23
  • SSRF vulnerability in the Tumbler plugin of XFCE
  • Interesting case with code execution in Nmap
  • Multiple vulnerabilities in LibreHealth EHR 2.0.0 part 2
  • Multiple vulnerabilities in LibreHealth EHR 2.0.0

Recent Comments

  • nomi on Review of PHP backdoors

Categories

  • CTF (2)
  • PHP (9)
  • Research (12)
  • Uncategorized (6)
One brick to the IT world
Proudly powered by WordPress.