Vulnerability index

Browse CVEs

8 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Patient Portal HIGH 7.5
CVE-2017-5598

An issue was discovered in eClinicalWorks healow@work 8.0 build 8. This is a blind SQL injection within the EmployeePortalServlet, which can be explo…

No fix yet
Fix from $1,950 2017-01-27
Patient Portal MEDIUM 6.1
CVE-2017-5599

An issue was discovered in eClinicalWorks Patient Portal 7.0 build 13. This is a reflected Cross Site Scripting vulnerability which affects the raceM…

Mitigation only
Fix from $1,600 2017-01-27
Patient Portal CRITICAL 9.8
CVE-2017-5569

An issue was discovered in eClinicalWorks Patient Portal 7.0 build 13. This is a blind SQL injection within the template.jsp, which can be exploited …

Mitigation only
Fix from $2,300 2017-01-23
Patient Portal HIGH 8.8
CVE-2017-5570

An issue was discovered in eClinicalWorks Patient Portal 7.0 build 13. This is a blind SQL injection within the messageJson.jsp, which can only be ex…

Mitigation only
Fix from $1,950 2017-01-23
Population Health CRITICAL 9.8
CVE-2015-4594EPSS 6%

eClinicalWorks Population Health (CCMR) suffers from a session fixation vulnerability. When authenticating a user, the application does not assign a …

No fix yet
Fix from $2,300 2017-01-10
Population Health HIGH 8.8
CVE-2015-4592

eClinicalWorks Population Health (CCMR) suffers from an SQL injection vulnerability in portalUserService.jsp which allows remote authenticated users …

No fix yet
Fix from $1,950 2017-01-10
Population Health HIGH 8.8
CVE-2015-4593

eClinicalWorks Population Health (CCMR) suffers from a cross-site request forgery (CSRF) vulnerability in portalUserService.jsp which allows remote a…

No fix yet
Fix from $1,950 2017-01-10
Population Health MEDIUM 6.1
CVE-2015-4591EPSS 5%

eClinicalWorks Population Health (CCMR) suffers from a cross site scripting vulnerability in login.jsp which allows remote unauthenticated users to i…

No fix yet
Fix from $1,600 2017-01-10