Jerry Padgett
16 exploits
Active since Apr 2018
OpenEMR 5.0.2-7.9.9 - Info Disclosure
CVSS 9.6
OpenEMR 5.0.0.5-7.0.3.4 - Stored Cross-Site Scripting in Billing UB04 Helper
CVSS 5.4
Reflected XSS via Unescaped contextName Parameter in Custom Template Editor
CVSS 6.1
OpenEMR Missing Authorization in Procedure Order AJAX Deletion Handler
CVSS 7.1
OpenEMR Vulnerable to Stored XSS via Unescaped portal_login_username in Credential Print View
CVSS 5.4
OpenEMR <=8.0.0 - Arbitrary File Exfiltration
CVSS 6.5
OpenEMR < 8.0.0 - Authenticated Authorization Bypass via Patient Portal Signature Endpoint
CVSS 8.1
OpenEMR < 8.0.0 - Authenticated Stored Cross-Site Scripting via Form Answers
CVSS 4.8
OpenEMR 5.0.0.5-7.0.3.4 - Stored Cross-Site Scripting in Billing UB04 Helper
CVSS 5.4
OpenEMR <8.0.0 - Privilege Escalation
CVSS 8.8
OpenEMR < 5.0.1 - Reflected Cross-Site Scripting via Multiple Parameters
CVSS 6.1
OpenEMR < 5.0.1 - Authenticated Access Control Bypass via Letter Template Parameters
CVSS 6.5
OpenEMR < 5.0.1 - Authenticated Access Control Bypass via Fax Dispatch Scan Parameter
CVSS 8.8
OpenEMR < 6.0.0.2 - Stored Cross-Site Scripting
CVSS 5.4
OpenEMR < 7.0.3.1 - Server-Side Request Forgery
CVSS 7.5
OpenEMR < 7.0.4 - Unauthorized Exposure of Sensitive Clinical Data
CVSS 6.5