Known Vulnerabilities for Openclinic Ga by Openclinic Ga Project
Listed below are 10 of the newest known vulnerabilities associated with "Openclinic Ga" by "Openclinic Ga Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-25860 json | OpenClinic GA 5.351.19 contains a reflected cross-site scripting vulnerability in the DICOM image upload handler that allows ... | Not Provided | 2026-06-09 | 2026-07-14 |
| CVE-2021-37364 json | OpenClinic GA 5.194.18 is affected by Insecure Permissions. By default the Authenticated Users group has the modify permissio... | 7.8 - HIGH | 2021-10-26 | 2021-10-28 |
| CVE-2020-27246 json | An exploitable SQL injection vulnerability exists in ‘listImmoLabels.jsp’ page of OpenClinic GA 5.173.3 application. The ... | 8.8 - HIGH | 2021-05-11 | 2022-04-29 |
| CVE-2020-27245 json | An exploitable SQL injection vulnerability exists in ‘listImmoLabels.jsp’ page of OpenClinic GA 5.173.3 application. The ... | 8.8 - HIGH | 2021-05-11 | 2022-04-29 |
| CVE-2020-27244 json | An exploitable SQL injection vulnerability exists in ‘listImmoLabels.jsp’ page of OpenClinic GA 5.173.3 application. The ... | 8.8 - HIGH | 2021-05-11 | 2022-04-29 |
| CVE-2020-27243 json | An exploitable SQL injection vulnerability exists in ‘listImmoLabels.jsp’ page of OpenClinic GA 5.173.3 application. The ... | 8.8 - HIGH | 2021-05-11 | 2022-04-29 |
| CVE-2020-27242 json | An exploitable SQL injection vulnerability exists in ‘listImmoLabels.jsp’ page of OpenClinic GA 5.173.3 application. The ... | 8.8 - HIGH | 2021-05-11 | 2022-04-29 |
| CVE-2020-27241 json | An exploitable SQL injection vulnerability exists in ‘getAssets.jsp’ page of OpenClinic GA 5.173.3. The serialnumber para... | 9.8 - CRITICAL | 2021-04-19 | 2022-08-05 |
| CVE-2020-27240 json | An exploitable SQL injection vulnerability exists in ‘getAssets.jsp’ page of OpenClinic GA 5.173.3. The componentStatus p... | 9.8 - CRITICAL | 2021-04-19 | 2022-08-05 |
| CVE-2020-27239 json | An exploitable SQL injection vulnerability exists in ‘getAssets.jsp’ page of OpenClinic GA 5.173.3. The assetStatus param... | 9.8 - CRITICAL | 2021-04-15 | 2022-04-28 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Openclinic Ga Project | Openclinic Ga | 5.89.05b | |||
| Application | Openclinic Ga Project | Openclinic Ga | 5.09.02 | |||
| Application | Openclinic Ga Project | Openclinic Ga | 5 | |||
| Application | Openclinic Ga Project | Openclinic Ga | 4 | |||
| Application | Openclinic Ga Project | Openclinic Ga | 3 |