SQL Injection Vulnerability in OpenMRS Reference Application and Platform
CVE-2021-43094
9.8CRITICAL
What is CVE-2021-43094?
An SQL Injection vulnerability exists in OpenMRS Reference Application Standalone Edition and Platform Standalone Edition that allows attackers to craft malicious GET requests targeting arbitrary parameters within the patient page. This could potentially expose sensitive patient information or allow unauthorized access to the database.
