Posted by Brian Hysell on Jun 19
Title: Authentication bypass in OpenEMR
CVE Reference: CVE-2015-4453
Product: OpenEMR
Vendor: http://www.open-emr.org/
Tested versions: 4.2.0 and 4.2.0 patch 1
Affected versions: 2.8.3 to 4.2.0 patch 1
Status: Fixed by vendor
Reported by: Brian D. Hysell
Details:
A bug in OpenEMR’s implementation of “fake register_globals” in
interface/globals.php allows an attacker to bypass authentication by
sending ignoreAuth=1 as a GET or…