Security Advisory

CVE-2020-5732

6.1
MEDIUM

Vulnerability Description

In OpenMRS 2.9 and prior, he import functionality of the Data Exchange Module does not properly redirect to a login page when an unauthenticated user attempts to access it. This allows unauthenticated users to use a feature typically restricted to administrators.
Published Date April 17, 2020
Official Source NIST NVD Advisory