Brady Miller
50 exploits
Active since Aug 2017
Reflected XSS via Unescaped contextName Parameter in Custom Template Editor
CVSS 6.1
OpenEMR's Message Update Ignores Patient id
CVSS 6.5
OpenEMR <8.0.0 - Auth Bypass
CVSS 8.1
OpenEMR 5.0.0.5-7.0.3.4 - XSS
CVSS 5.4
OpenEMR <8.0.0 - Broken Access Control
CVSS 6.5
OpenEMR <8.0.0 - Privilege Escalation
CVSS 6.5
OpenEMR <8.0.0 - Privilege Escalation
CVSS 8.8
OpenEMR <5.0.0 - Auth Bypass
CVSS 7.5
OpenEMR <5.0.1 - XSS
CVSS 6.1
OpenEMR <5.0.1 - Auth Bypass
CVSS 6.5
OpenEMR <5.0.1 - Auth Bypass
CVSS 8.8
OpenEMR <5.0.1 - Path Traversal
CVSS 5.3
OpenEMR <5.0.1 - SQL Injection
CVSS 9.8
Open-emr Openemr < 5.0.1.1 - SQL Injection
CVSS 8.8
Open-emr Openemr < 6.0.0 - XSS
CVSS 4.8
Open-emr Openemr < 6.0.0 - XSS
CVSS 4.8
Open-emr Openemr < 6.0.0 - XSS
CVSS 4.8
OpenEMR <6.0.0 - Privilege Escalation
CVSS 6.5
Open-emr Openemr < 6.0.0 - XSS
CVSS 5.4
Open-emr Openemr < 6.0.0 - XSS
CVSS 6.1
OpenEMR <6.0.0.1 - Info Disclosure
CVSS 8.1
Open-emr Openemr < 6.0.0.4 - XSS
CVSS 5.4
Open-emr Openemr < 6.0.0.4 - XSS
CVSS 5.4
Open-emr Openemr < 6.0.0.4 - XSS
CVSS 3.5
GitHub openemr/openemr <7.0.0 - Info Disclosure
CVSS 8.1