CVE-2018-16521

An XML External Entity (XXE) vulnerability exists in HTML Form Entry 3.7.0, as distributed in OpenMRS Reference Application 2.8.0.
Configurations

Configuration 1 (hide)

cpe:2.3:a:openmrs:html_form_entry:3.7.0:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:openmrs:reference_application:2.8.0:*:*:*:*:*:*:*

History

21 Nov 2024, 03:52

Type Values Removed Values Added
References () https://github.com/openmrs/openmrs-module-htmlformentry/pull/137 - Patch, Third Party Advisory () https://github.com/openmrs/openmrs-module-htmlformentry/pull/137 - Patch, Third Party Advisory
References () https://github.com/openmrs/openmrs-module-htmlformentry/pull/138 - Patch, Third Party Advisory () https://github.com/openmrs/openmrs-module-htmlformentry/pull/138 - Patch, Third Party Advisory

Information

Published : 2018-09-05 15:29

Updated : 2024-11-21 03:52


NVD link : CVE-2018-16521

Mitre link : CVE-2018-16521

CVE.ORG link : CVE-2018-16521


JSON object : View

Products Affected

openmrs

  • html_form_entry
  • reference_application
CWE
CWE-611

Improper Restriction of XML External Entity Reference