CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.1. See the original NVD description below for full technical details.
CVE
CVE-2020-5728
Severity
MEDIUM
CVSS
6.1
EPSS
1.14%
Original NVD Description
OpenMRS 2.9 and prior copies "Referrer" header values into an html element named "redirectUrl" within many webpages (such as login.htm). There is insufficient validation for this parameter, which allows for the possibility of cross-site scripting.
Related CVEs
Other vulnerabilities affecting the same vendor(s)