XML External Entity Vulnerability in HTML Form Entry by OpenMRS
CVE-2018-16521
9.8CRITICAL
What is CVE-2018-16521?
An XML External Entity (XXE) vulnerability was identified in HTML Form Entry version 3.7.0, which is included in OpenMRS Reference Application 2.8.0. This vulnerability could allow an attacker to exploit XML input to gain access to sensitive data, manipulate the system, or perform other malicious actions. It highlights the importance of validating and sanitizing XML input to prevent possible exploitation.
