Cross-Site Request Forgery and XSS in OpenMRS Reporting Module
CVE-2017-7990
8.8HIGH
What is CVE-2017-7990?
The OpenMRS Reporting Module version 1.12.0 is susceptible to Cross-Site Request Forgery, allowing attackers to perform unauthorized actions on behalf of authenticated users. This vulnerability can enable the insertion of malicious JavaScript code into the name field of the application, potentially leading to unauthorized data manipulation or theft while compromising the security of the web application.
